Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Google Cloud Build Comment Control Bypass
Vulnerability Description
An improper authorization vulnerability in GitHub Trigger Comment Control in Google Cloud Build prior to 2026-1-26 allows a remote attacker to execute arbitrary code in the build environment. This vulnerability was patched on 26 January 2026, and no customer action is needed.
CVSS Information
N/A
Vulnerability Type
授权机制不正确
Vulnerability Title
Google Cloud Build 安全漏洞
Vulnerability Description
Google Cloud Build是美国谷歌(Google)公司的一个完全托管的CI/CD平台。 Google Cloud Build 2026-1-26之前版本存在安全漏洞,该漏洞源于GitHub Trigger Comment Control存在授权不当,可能导致远程攻击者在构建环境中执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A