Описание
HashiCorp Nomad’s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-8052) is fixed in version 0.1.2 of the exec2 task driver.
EPSS
6 Medium
CVSS3
Дефекты
Связанные уязвимости
HashiCorp Nomad’s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-8052) is fixed in version 0.1.2 of the exec2 task driver.
HashiCorp Nomad\u2019s exec2 task driver prior to 0.1.2 is vulnerable ...
HashiCorp Nomad’s exec2 task driver vulnerable to a symlink attack
Уязвимость драйвера задач exec2 для Nomad, связанная с некорректным определением символических ссылок перед доступом к файлу, позволяющая нарушителю получить доступ на чтение и запись произвольных файлов
EPSS
6 Medium
CVSS3