Post
STACKFLAG
stackflag.bsky.social
did:plc:zhe53h7ajlloep2oso5pqxzj
CVE-2026-18236
An attacker can execute unauthorized tools in the Google-ADK by manipulating session history. This is possible because the framework does not properly verify tool registration and confirmation requirements. To…
Too many irrelevant or confusing CVEs? Use stackflag.com
#CVE #infosec
2026-08-01T12:54:04.164Z