Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-8052

Опубликовано: 12 мая 2026
Источник: debian
EPSS Низкий

Описание

HashiCorp Nomad’s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-8052) is fixed in version 0.1.2 of the exec2 task driver.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
nomadremovedpackage

EPSS

Процентиль: 3%
0.00129
Низкий

Связанные уязвимости

CVSS3: 6
ubuntu
3 месяца назад

HashiCorp Nomad’s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-8052) is fixed in version 0.1.2 of the exec2 task driver.

CVSS3: 6
nvd
3 месяца назад

HashiCorp Nomad’s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-8052) is fixed in version 0.1.2 of the exec2 task driver.

CVSS3: 6
github
3 месяца назад

HashiCorp Nomad’s exec2 task driver vulnerable to a symlink attack

CVSS3: 6
fstec
3 месяца назад

Уязвимость драйвера задач exec2 для Nomad, связанная с некорректным определением символических ссылок перед доступом к файлу, позволяющая нарушителю получить доступ на чтение и запись произвольных файлов

EPSS

Процентиль: 3%
0.00129
Низкий