Google Genkit: vulnerabilities and CVEs
Google Genkit has 1 published vulnerabilities, 1 of them in the last 12 months. 0 are rated critical and 0 are listed by CISA as actively exploited.
CVEs1
Last 12 months1
Critical0
Actively exploited0
All vulnerabilities in the catalogue →⭐ Follow this technology
Latest vulnerabilities
| CVE | Severity | EPSS | Active exploitation | Published | Description |
|---|---|---|---|---|---|
| CVE-2026-67179 | High (7.8) | 0.19% | — | Aug 11, 2026 | Genkit does not properly validate host request headers. Any host on the developer's network, and any website the developer visits (via DNS rebinding), can reach POST /api/runAction on the Dev UI server (default port… |
🎯 How it gets exploited (ATT&CK techniques)
Number of CVEs of this technology mapped to each exploitation or primary-impact technique.
📰 Related news
- Alert Google patches four Chrome vulnerabilities, two of them critical sandbox escapes
- Alert Google fixes 95 vulnerabilities in Chrome, 23 of them critical, in its latest Stable channel update
- Alert Google fixes two critical vulnerabilities in Cloud Application Integration with no customer action required