{ "dataType": "CVE_RECORD", "dataVersion": "5.2", "cveMetadata": { "cveId": "CVE-2026-15587", "assignerOrgId": "f45cbf4e-4146-4068-b7e1-655ffc2c548c", "state": "PUBLISHED", "assignerShortName": "GoogleCloud", "dateReserved": "2026-07-13T12:21:09.118Z", "datePublished": "2026-08-05T14:40:11.157Z", "dateUpdated": "2026-08-05T16:07:31.098Z" }, "containers": { "cna": { "providerMetadata": { "orgId": "f45cbf4e-4146-4068-b7e1-655ffc2c548c", "shortName": "GoogleCloud", "dateUpdated": "2026-08-05T14:40:11.157Z" }, "title": "Privilege Escalation in Google SecOps (Chronicle SOAR) via Crafted Authentication Header", "problemTypes": [ { "descriptions": [ { "lang": "en", "cweId": "CWE-346", "description": "CWE-346 Origin Validation Error", "type": "CWE" } ] } ], "impacts": [ { "capecId": "CAPEC-233", "descriptions": [ { "lang": "en", "value": "CAPEC-233 Privilege Escalation" } ] } ], "affected": [ { "vendor": "Google Cloud", "product": "Google SecOps (Chronicle SOAR)", "versions": [ { "status": "affected", "version": "0", "lessThan": "6.3.85", "versionType": "custom" } ], "defaultStatus": "unaffected" } ], "descriptions": [ { "lang": "en", "value": "Improper Privilege Management in Google SecOps (Chronicle SOAR) versions prior to 6.3.85 on Google Cloud Platform allows an authenticated attacker to escalate privileges to system-level administrative access using a crafted internal authentication header.\n\n\n\n\nThis vulnerability was patched with version 6.3.85, and no customer action is needed.", "supportingMedia": [ { "type": "text/html", "base64": false, "value": "