Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2026-8052

Опубликовано: 12 мая 2026
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 6

Описание

HashiCorp Nomad’s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-8052) is fixed in version 0.1.2 of the exec2 task driver.

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

needs-triage

esm-apps/focal

needs-triage

jammy

DNE

noble

DNE

questing

DNE

resolute

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 3%
0.00129
Низкий

6 Medium

CVSS3

Связанные уязвимости

CVSS3: 6
nvd
3 месяца назад

HashiCorp Nomad’s exec2 task driver prior to 0.1.2 is vulnerable to arbitrary file read and write on the client host as the Nomad process user through a symlink attack. This vulnerability (CVE-2026-8052) is fixed in version 0.1.2 of the exec2 task driver.

CVSS3: 6
debian
3 месяца назад

HashiCorp Nomad\u2019s exec2 task driver prior to 0.1.2 is vulnerable ...

CVSS3: 6
github
3 месяца назад

HashiCorp Nomad’s exec2 task driver vulnerable to a symlink attack

CVSS3: 6
fstec
3 месяца назад

Уязвимость драйвера задач exec2 для Nomad, связанная с некорректным определением символических ссылок перед доступом к файлу, позволяющая нарушителю получить доступ на чтение и запись произвольных файлов

EPSS

Процентиль: 3%
0.00129
Низкий

6 Medium

CVSS3