On September 27th, the Cornerstone team found Security patch auto update applied to GCP Cloud Run Functions without compatibility testing with EdGraph service. The CloudOps team addressed the issue and taken necessary actions.
The security patch update did not include sufficient advance communication from GCP, leaving teams unprepared to test and mitigate any breaking changes and no backward compatibility or mitigation measures were provided.
Input Validation: Future patches include compatibility testing and should be added under planned maintenance.
Enhanced Monitoring & Maintenance: Disable auto updates & proactive testing to mitigate risks from such Security/third-party updates.