Deserialization Vulnerability in Google Cloud Application Integration
CVE-2026-81867
9.4CRITICAL
What is CVE-2026-81867?
A deserialization vulnerability in the JavaScript Task within Google Cloud Application Integration impacts versions before June 28, 2026. This security flaw permits an authenticated user with standard permissions to execute arbitrary code on shared production servers by utilizing a specially crafted script, thereby circumventing parameter guards. Google has issued a patch for this vulnerability, eliminating the risk without requiring any action from customers.
Affected Version(s)
Application Integration 0 < 2026-06-28
