Google Vertex AI SDK Flaw Let Attackers Hijack Model Uploads via Bucket Squatting
2026-06-17T01:24:10Z•0664a5ec8a51661eb8ed47ae1563f92c9eb5b27211964ec1cfc32ec73bf7e117
active_exploitationai_securityandroid_trojanartifact_detectionbackdoorcisa-kevcloud_securitycredential_theftincident_responsemalwaremodel_infrastructurepackage_hijackpackage_repositoryphishingprivilege_escalationremote_code_executionsoftware_tamperingsupply_chainthreat_actor_statesponsoredvulnerabilities
What happened
A broad set of high-impact cybersecurity events was reported: a critical unauthenticated RCE in Splunk Enterprise (CVE-2026-20253, CVSS 9.8); active exploitation of multiple FortiSandbox flaws (CVE-2026-39813, CVE-2026-39808, CVE-2026-25089); an authentication-bypass affecting PAN-OS GlobalProtect (CVE-2026-0257) under active exploitation; and a Cisco SD‑WAN Manager web UI flaw (CVE-2026-20262). Other notable incidents include a Google Vertex AI SDK Python flaw (researchers dubbed “Pickle in the Middle”) enabling model-upload hijacking and remote code execution in serving infrastructure; a Lit
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- the_hacker_news
- Record identifier
- 0664a5ec8a51661eb8ed47ae1563f92c9eb5b27211964ec1cfc32ec73bf7e117
- Enrichment time
- 2026-06-17T01:24:10Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.