Sploitus

CVE-2026-2472

4 known exploits for CVE-2026-2472

Stored Cross-Site Scripting (XSS) in the _genai/_evals_visualization component of Google Cloud Vertex AI SDK (google-cloud-aiplatform) versions from 1.98.0 up to (but not including) 1.131.0 allows an unauthenticated remote attacker to execute arbitrary JavaScript in a victim's Jupyter or Colab environment via injecting script escape sequences into model evaluation results or dataset JSON data.

Fix
Available
CVSS 4.0
8.6 HIGH
CVSS 3.1
8.1 HIGH
EPSS
0.5% (42th percentile)
Weakness
CWE-79
NVD status
Deferred
Published
2026-02-20
Attack patterns
CAPEC-592

Fix

Customers will need to update their google-cloud-aiplatform Python SDK to version 1.131.0 (released on 2025-12-16) or later to receive the fix.

CVE-2026-2472 at NVD
Authoritative description, scoring and affected products

4 known exploits for CVE-2026-2472

Proof-of-concept code and exploit modules indexed by Sploitus