VYPR

PyPI package

google-adk

pkg:pypi/google-adk

Vulnerabilities (1)

  • CVE-2026-4810CriApr 13, 2026
    affected >= 1.7.0, < 1.28.1fixed 1.28.1

    A Code Injection and Missing Authentication vulnerability in Google Agent Development Kit (ADK) versions 1.7.0 (and 2.0.0a1) through 1.28.1 (and 2.0.0a2) on Python (OSS), Cloud Run, and GKE allows an unauthenticated remote attacker to execute arbitrary code on the server hosting