Linuxsecurity openSUSE Google Cloud SAP Agent Authorization Bypass Vulnerability CVE-2026-33186
Article Content
- •CVE-2026-33186 allows authorization bypass in google-cloud-sap-agent 3.12.
- •Affected systems include openSUSE Leap 15.6 and multiple SUSE Cloud Modules.
- •Immediate patching is recommended due to the availability of a PoC for exploitation.
A critical vulnerability (CVE-2026-33186) has been identified in the google-cloud-sap-agent version 3.12, affecting multiple SUSE systems including openSUSE Leap 15.6 and various Public Cloud Modules. The flaw allows for an authorization bypass due to improper validation of the HTTP/2 path pseudo-header, which could potentially enable unauthorized access to sensitive resources. This vulnerability was published on March 20, 2026, and a proof of concept (PoC) was made available on April 7, 2026. The CVSS score for this vulnerability is reported as high, with values ranging from 8.1 to 9.1 across different sources. Users are advised to apply the latest patches immediately to mitigate the risk of exploitation. Affected products include openSUSE Leap and several SUSE Linux Enterprise Server versions. The patch includes various improvements and fixes to enhance the overall reliability of the SAP Agent.
Ask AI about this cluster
Answers cite the sources they use
Timeline
More articles in this cluster (2)
Following this threat?
Track CVE-2026-33186 in your own feed — you're alerted when they show up in new reporting, leak sites or exploitation.
Free account · no card needed
Continue Reading
SUSE Patches Critical Auth Bypass and DoS Vulnerabilities SUSE has released important security updates for its google-osconfig-agent and google-guest-agent due to multiple vulnerabilities. The updates address CVE-2026-41178, which allows denial-of-service (DoS) attacks via oversized inputs, and CVE-2026-33186, which enables authorization bypass through improper HTTP/2 header…
CVE-2015-3306 Exploited in ProFTPD FTP Servers CVE-2015-3306, a vulnerability in ProFTPD 1.3.5, allows remote attackers to read and write arbitrary files using the SITE CPFR and SITE CPTO commands. This exploit can lead to unauthorized access and potential remote code execution, as the commands are executed with the privileges of the ProFTPD service. Active…