GHSA-wh2j-26j7-9728 · Severity: high · Ecosystem: pip — Google Cloud Vertex AI has a a vulnerability involving predictable bucket naming
Predictable bucket naming in Vertex AI Experiments in Google Cloud Vertex AI from version 1.21.0 up to (but not including) 1.133.0 on Google Cloud Platform allows an unauthenticated remote attacker to achieve cross-tenant remote code execution, model theft, and poisoning via pre-creating predictably named Cloud Storage buckets (Bucket Squatting). This vulnerability was patched and no customer action is needed.
Conclusion & alert: CVE-2026-2473 is rated Moderate Risk (48.5/100): CVSS High severity, with medium exploitation likelihood (EPSS 0.27%). Mandatory action: Review affected assets and schedule remediation.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-02-26 | 0.21% | 0.27% | +0.07% |
| 2 | 2026-02-21 | — | 0.21% | — |
Full EPSS history (2 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 7.7 | 4.0 | HIGH |
|
— | — | f45cbf4e-4146-4068-b7e1-655ffc2c548c |
GHSA-wh2j-26j7-9728 · Severity: high · Ecosystem: pip — Google Cloud Vertex AI has a a vulnerability involving predictable bucket naming
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| No affected products in dataset. | |||