Intel

AIKIDO-2026-10518

google-adk is vulnerable to Remote Code Execution (RCE)

Remote Code Execution (RCE) Pre-CVE
Found by Aikido Intel before public disclosure or CVE publication.
Published Apr 23, 2026

87

High Risk

This Affects:

PYTHONgoogle-adk
0.0.1 - 1.31.0
Fixed in 1.31.1
Are you affected? Scan for Free

TL;DR

Improper validation of nested YAML agent configurations in Google ADK Python allowed attacker-controlled args fields to reach executable tool paths, potentially resulting in remote code execution when configs were loaded through the web interface. Successful exploitation could permit arbitrary command execution on the host.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range and you are using the web UI functionality.

Background info

google-adk is vulnerable to Remote Code Execution (RCE) in versions 0.0.1 - 1.31.0.

How to fix this

Upgrade the google-adk library to the patch version.