Apigee X Security Vulnerability Affecting BigQuery DAO
securitygcpsecurity-advisorygcp-bigquery
security
A vulnerability in Apigee X's BigQuery Data Access Object allowed authenticated attackers to exfiltrate cross-tenant data. This issue has been patched and affects specific versions on Google Cloud Platform, with Apigee hybrid remaining unaffected. No customer action is required for this security fix.
Security (1) ›
- Apigee X
An Improper Input Validation vulnerability in BigQuery DAO in Google Cloud Apigee versions prior to 2026-06-12 on Google Cloud Platform allowed an authenticated attacker to exfiltrate cross-tenant data. This vulnerability was patched on 12 June 2026 on the Apigee Servers, and no customer action is needed. Apigee hybrid was not affected. For more information, see CVE-2026-12879 .
Read the original announcement →
https://docs.cloud.google.com/release-notes#July_08_2026
Related releases
- BigQuery Integrates Google Cloud Observability for Data Agent Monitoring Google Cloud release notes ·
- BigQuery Adds Time Series ML Functions, Deprecates Graph in Standard, and Enhances AI Agent CLI Access Google Cloud release notes ·
- Google Cloud details Hive Metastore modernization with Lakehouse runtime catalog Google Cloud Blog ·
- BigQuery User-Specific Reservation Limit Increased to 100 Google Cloud release notes ·
- Cloud SDK 581.0.0 Streamlines MCP and Promotes AI Platform Commands to GA Google Cloud release notes ·
- Terraform Google Provider v7.45.0 Adds New Resources and Fixes Terraform Google Provider Releases ·