Pickle in the Middle – Hijacking Vertex AI Model Uploads for Cross-Tenant RCE
Researchers at Palo Alto Networks Unit 42 discovered a vulnerability in Google Cloud Vertex AI SDK for Python that allowed attackers to hijack model uploads and achieve remote code execution across te…