CVE-2026-79696
Code injection in ADK Python 2.0‑2.6 via pytest test replay, unauthenticated remote exec.
- CVSS 10.0
- 184
- Input Validation and Sanitization
- Remote
A Code Injection vulnerability in adk web in Google Cloud Agent Development Kit (ADK) for Python versions 2.0.0 through 2.6.0 on Python (OSS), Cloud Run, and GKE environments where pytest is installed allows an unauthenticated remote attacker to execute arbitrary code using a crafted test session replay.
- CWE
- 184
- CVSS base score
- 10.0
- Published
- 2026-09-09
- OWASP
- A03 Injection
- Orthogonal defect classification
- Interface
- Code defect classification
- Incorrect Interface
- Category
- Input Validation and Sanitization
- Subcategory
- Command Injection
- Accessibility scope
- Remote
- Impact
- Arbitrary Code Execution
- Affected component
- Google Cloud Agent Development Kit (ADK)
- Fixed by upgrading
- Yes
Solution
Upgrade the Google Cloud ADK for Python to version 2.7.0 or later.
Vulnerable code sample
import subprocess
def run_test_command(session_data):
# VULNERABLE: directly passing attacker‑controlled string to shell
cmd = f"pytest {session_data}"
subprocess.run(cmd, shell=True, check=False)Patched code sample
import subprocess
import shlex
def run_test_command(session_data):
# FIX: avoid shell=True and safely split arguments
cmd = ["pytest"] + shlex.split(session_data)
subprocess.run(cmd, shell=False, check=False)Payload
__VAITP_MODEL_REFUSED__
Cite this entry
@misc{vaitp:cve202679696,
title = {{Code injection in ADK Python 2.0‑2.6 via pytest test replay, unauthenticated remote exec.}},
author = {Bogaerts, Fr\'ed\'eric and Ivaki, Naghmeh and Fonseca, Jos\'e},
year = {2026},
note = {VAITP Python Vulnerability Dataset, entry CVE-2026-79696},
howpublished = {\url{https://netpack.pt/vaitp/vulnerability/CVE-2026-79696/}}
}
Introducing the "VAITP dataset": a specialized repository of Python vulnerabilities and patches, meticulously compiled for the use of the security research community. As Python's prominence grows, understanding and addressing potential security vulnerabilities become crucial. Crafted by and for the cybersecurity community, this dataset offers a valuable resource for researchers, analysts, and developers to analyze and mitigate the security risks associated with Python. Through the comprehensive exploration of vulnerabilities and corresponding patches, the VAITP dataset fosters a safer and more resilient Python ecosystem, encouraging collaborative advancements in programming security.
The supreme art of war is to subdue the enemy without fighting.
Sun Tzu – “The Art of War”
:: Shaping the future through research and ingenuity ::
