CVE-2026-2274
Last modified
CVE-2026-2274 is a high-severity vulnerability rated 8.5/10 on the CVSS scale. A SSRF and Arbitrary File Read vulnerability in AppSheet Core in Google AppSheet prior to 2025-11-23 allows an authenticated remote attacker to read sensitive local files and access internal network resources via crafted requests to the production cluster. This vulnerability was patched and no customer action is needed.. EPSS estimates a 0.25% chance of exploitation in the next 30 days.
Description
A SSRF and Arbitrary File Read vulnerability in AppSheet Core in Google AppSheet prior to 2025-11-23 allows an authenticated remote attacker to read sensitive local files and access internal network resources via crafted requests to the production cluster. This vulnerability was patched and no customer action is needed.
Metrics
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:N/VA:N/SC:H/SI:H/SA:H/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:Clear
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Deferred
Frequently Asked Questions
What is CVE-2026-2274?
How severe is CVE-2026-2274?
How do I fix CVE-2026-2274?
How Strix Helps
- One Click Account Takeover in GranolaHow a notification link broke out of Electron and led to a one-click account takeover.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-22733Spring Boot applications with Actuator can be vulnerable to …8.1
- CVE-2026-22734Cloud Foundry UUA is vulnerable to a bypass that allows an a…8.6
- CVE-2026-22735Spring MVC and WebFlux applications are vulnerable to stream…2.6
- CVE-2026-22737Use of Java scripting engine enabled (e.g. JRuby, Jython) te…5.9
- CVE-2026-22738In Spring AI, a SpEL injection vulnerability exists in Simpl…9.8
- CVE-2026-22739Vulnerability in Spring Cloud when substituting the profile …8.6
- CVE-2026-22740A WebFlux server application that processes multipart reques…6.5
- CVE-2026-22741Spring MVC and WebFlux applications are vulnerable to cache …3.1
- CVE-2026-22742Spring AI's spring-ai-bedrock-converse contains a Server-Sid…8.6
- CVE-2026-22743Spring AI's spring-ai-neo4j-store contains a Cypher injectio…7.5
- CVE-2026-22744In RedisFilterExpressionConverter of spring-ai-redis-store, …7.5
- CVE-2026-22745Spring MVC and WebFlux applications are vulnerable to Denial…5.3
Are you affected by CVE-2026-2274?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
