github.com/hashicorp/nomad vulnerabilities

Browse known CVEs and advisories by package and ecosystem. Severity tells you the worst case. What determines real risk is whether the vulnerable code actually runs in your applications.

Get a demo

Browse by ecosystem

npmPyPIMavenGoRubyGemsCargoNuGetComposerpubSwiftGitHub Actions
CVE-IDSeverityPackage summary
CVE-2026-7474Highgithub.com/hashicorp/nomad: HashiCorp Nomad vulnerable to a path traversalCVE-2026-6959Mediumgithub.com/hashicorp/nomad: HashiCorp Nomad vulnerable to symlink attackCVE-2025-4922Highgithub.com/hashicorp/nomad: Hashicorp Nomad Incorrect Privilege Assignment vulnerabilityCVE-2025-1296Mediumgithub.com/hashicorp/nomad: Nomad is vulnerable to unintentional exposure of the workload identity token and client secret…CVE-2024-12678Mediumgithub.com/hashicorp/nomad: Hashicorp Nomad Incorrect Privilege Assignment vulnerabilityCVE-2024-10975Mediumgithub.com/hashicorp/nomad: Hashicorp Nomad Incorrect Authorization vulnerabilityCVE-2024-7625Mediumgithub.com/hashicorp/nomad: Nomad Vulnerable to Allocation Directory Escape On Non-Existing File Paths Through Archive UnpackingCVE-2024-6717Highgithub.com/hashicorp/nomad: HashiCorp Nomad is vulnerable to path escape through archive unpacking during migrationCVE-2024-1329Highgithub.com/hashicorp/nomad: HashiCorp Nomad vulnerable to symlink attacksCVE-2023-3300Mediumgithub.com/hashicorp/nomad: Nomad Search API Leaks Information About CSI PluginsCVE-2023-3299Lowgithub.com/hashicorp/nomad: Nomad Caller ACL Token’s Secret ID is Exposed to SentinelCVE-2023-3072Mediumgithub.com/hashicorp/nomad: Nomad ACL Policies without Label are Applied to Unexpected ResourcesCVE-2023-1296Mediumgithub.com/hashicorp/nomad: Hashicorp Nomad ACLs Cannot Deny Access to Workload’s Own VariablesCVE-2023-1782Highgithub.com/hashicorp/nomad: HashiCorp Nomad vulnerable to unauthenticated client agent HTTP request privilege escalationCVE-2023-1299Highgithub.com/hashicorp/nomad: Nomad Job Submitter Privilege Escalation Using Workload IdentityCVE-2023-0821Mediumgithub.com/hashicorp/nomad: Uncontrolled Resource Consumption in Hashicorp NomadCVE-2022-3866Mediumgithub.com/hashicorp/nomad: HashiCorp Nomad vulnerable to non-sensitive metadata exposureCVE-2022-3867Lowgithub.com/hashicorp/nomad: HashiCorp Nomad vulnerable to Insufficient Session ExpirationCVE-2022-41606Mediumgithub.com/hashicorp/nomad: Nomad Panics On Job Submission With Bad Artifact Stanza Source URLCVE-2022-30324Criticalgithub.com/hashicorp/nomad: Privilege escalation in Hashicorp NomadCVE-2019-12618Criticalgithub.com/hashicorp/nomad: Hashicorp Nomad Access Control IssuesCVE-2022-24685Highgithub.com/hashicorp/nomad: HashiCorp Nomad vulnerable to Allocation of Resources Without Limits or ThrottlingCVE-2022-24683Highgithub.com/hashicorp/nomad: Arbitrary file reads in HashiCorp NomadCVE-2022-24684Mediumgithub.com/hashicorp/nomad: Nomad Spread Job Stanza May Trigger Panic in ServersCVE-2020-27195Criticalgithub.com/hashicorp/nomad: Use After Free in HashiCorp Nomad

Stop the waste.
Protect your environment with Kodem.