Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hx53-77qj-8663

Опубликовано: 12 мая 2026
Источник: github
Github: Прошло ревью
CVSS3: 8.8

Описание

HashiCorp Nomad vulnerable to a path traversal

HashiCorp Nomad and Nomad Enterprise prior to 2.0.1 are vulnerable to code execution on the client host through a path traversal attack. This vulnerability (CVE-2026-7474) is fixed in Nomad 2.0.1, 1.11.5 and 1.10.11.

Пакеты

Наименование

github.com/hashicorp/nomad

go
Затронутые версииВерсия исправления

< 1.11.0-rc.1.0.20260511152149-cd7240c4099a

1.11.0-rc.1.0.20260511152149-cd7240c4099a

EPSS

Процентиль: 93%
0.06892
Низкий

8.8 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 8.8
ubuntu
3 месяца назад

HashiCorp Nomad and Nomad Enterprise prior to 2.0.1 are vulnerable to code execution on the client host through a path traversal attack. This vulnerability (CVE-2026-7474) is fixed in Nomad 2.0.1, 1.11.5 and 1.10.11.

CVSS3: 8.8
nvd
3 месяца назад

HashiCorp Nomad and Nomad Enterprise prior to 2.0.1 are vulnerable to code execution on the client host through a path traversal attack. This vulnerability (CVE-2026-7474) is fixed in Nomad 2.0.1, 1.11.5 and 1.10.11.

CVSS3: 8.8
debian
3 месяца назад

HashiCorp Nomad and Nomad Enterprise prior to 2.0.1 are vulnerable to ...

CVSS3: 8.8
fstec
3 месяца назад

Уязвимость оркестратора приложений Nomad, связанная с неверным ограничением имени пути к каталогу, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
redos
22 дня назад

Уязвимость nomad

EPSS

Процентиль: 93%
0.06892
Низкий

8.8 High

CVSS3

Дефекты

CWE-22