Stored Cross-Site Scripting (XSS) in the _genai/_evals_visualization component of Google Cloud Vertex AI SDK (google-cloud-aiplatform) versions from 1.98.0 up to (but not including) 1.131.0 allows an unauthenticated remote attacker to execute arbitrary JavaScript in a victim's Jupyter or Colab environment via injecting script escape sequences into model evaluation results or dataset JSON data.

Project Subscriptions

Vendors Products
Google Cloud Subscribe
Vertex Ai Sdk For Python Subscribe
Advisories
Source ID Title
Github GHSA Github GHSA GHSA-qv8j-hgpc-vrq8 Google Cloud Vertex AI SDK affected by Stored Cross-Site Scripting (XSS)
Fixes

Solution

Customers will need to update their google-cloud-aiplatform Python SDK to version 1.131.0 (released on 2025-12-16) or later to receive the fix.


Workaround

No workaround given by the vendor.

History

Mon, 23 Feb 2026 21:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 23 Feb 2026 15:00:00 +0000

Type Values Removed Values Added
First Time appeared Google Cloud
Google Cloud vertex Ai Sdk For Python
Vendors & Products Google Cloud
Google Cloud vertex Ai Sdk For Python

Sat, 21 Feb 2026 00:15:00 +0000

Type Values Removed Values Added
References
Metrics threat_severity

None

cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:N'}

threat_severity

Important


Fri, 20 Feb 2026 20:00:00 +0000

Type Values Removed Values Added
Description Stored Cross-Site Scripting (XSS) in the _genai/_evals_visualization component of Google Cloud Vertex AI SDK (google-cloud-aiplatform) versions from 1.98.0 up to (but not including) 1.131.0 allows an unauthenticated remote attacker to execute arbitrary JavaScript in a victim's Jupyter or Colab environment via injecting script escape sequences into model evaluation results or dataset JSON data.
Title Stored Cross-Site Scripting (XSS) in Vertex AI Python SDK Visualization
Weaknesses CWE-79
References
Metrics cvssV4_0

{'score': 8.6, 'vector': 'CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:P/VC:H/VI:H/VA:H/SC:L/SI:L/SA:L/U:Amber'}


Projects

Sign in to view the affected projects.

cve-icon MITRE

Status: PUBLISHED

Assigner: GoogleCloud

Published:

Updated: 2026-02-23T19:56:46.574Z

Reserved: 2026-02-13T15:38:12.195Z

Link: CVE-2026-2472

cve-icon Vulnrichment

Updated: 2026-02-23T19:56:36.124Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-02-20T20:25:24.307

Modified: 2026-02-23T18:14:13.887

Link: CVE-2026-2472

cve-icon Redhat

Severity : Important

Publid Date: 2026-02-20T19:29:12Z

Links: CVE-2026-2472 - Bugzilla

cve-icon OpenCVE Enrichment

Updated: 2026-02-23T14:35:16Z

Weaknesses