SEPTEMBER 20, 2026
Live Feed
Back to database
Case File

CVE-2026-12879

MEDIUM · CVSS 5.9 EPSS 0.19%

Source: NVD + CISA KEV + EPSS · Published 2026-07-09 · Last synced 2026-08-08

CyberRota Analysis

AI-Generated

An improper input validation vulnerability in the BigQuery DAO of Google Cloud Apigee allows authenticated attackers to exfiltrate cross-tenant data in versions prior to June 12, 2026. Organizations using affected versions of Apigee should prioritize this issue to ensure data integrity and prevent unauthorized access to sensitive information, though no immediate action is required as the vulnerability has been patched.

CVE
CVE-2026-12879
Severity
MEDIUM
CVSS
5.9
EPSS
0.19%

Original NVD Description

An Improper Input Validation vulnerability in BigQuery DAO in Google Cloud Apigee versions prior to 2026-06-12 on Google Cloud Platform allows an authenticated attacker to exfiltrate cross-tenant data. This vulnerability was patched on 12 June 2026 on the Apigee Servers, and no customer action is needed.