Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
| Link | Providers |
|---|---|
| https://github.com/googleapis/mcp-toolbox/pull/3452 |
|
Sun, 02 Aug 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Google
Google mcp-toolbox |
|
| Vendors & Products |
Google
Google mcp-toolbox |
Fri, 31 Jul 2026 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 31 Jul 2026 02:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An improper authorization and security-boundary bypass vulnerability in the bigquery-execute-sql tool component of Google mcp-toolbox versions 0.16.1 through 1.4.0 allows an authenticated attacker to bypass allowedDatasets validation checks. The toolbox relies on the BigQuery dry-run API to enforce dataset restrictions, but due to a fail-open logic flaw, it bypasses validation when the API returns an empty array for specialized constructs. This allows the attacker to extract structural DDL schemas for explicitly excluded datasets via INFORMATION_SCHEMA, and access downstream federated row data via EXTERNAL_QUERY connections. | |
| Title | BigQuery Dataset Allowlist Bypass via Metadata Dry-Run in MCP Toolbox | |
| Weaknesses | CWE-285 CWE-863 |
|
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Google
Published:
Updated: 2026-07-31T16:09:31.250Z
Reserved: 2026-07-03T02:06:17.583Z
Link: CVE-2026-14538
Updated: 2026-07-31T16:09:23.644Z
Status : Analyzed
Published: 2026-07-31T02:16:28.757
Modified: 2026-08-08T00:25:01.997
Link: CVE-2026-14538
No data.
OpenCVE Enrichment
Updated: 2026-08-03T10:30:18Z