5.3
CVSSv3

CVE-2019-14802

Published: 26/12/2022 Updated: 05/01/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

HashiCorp Nomad 0.5.0 up to and including 0.9.4 (fixed in 0.9.5) reveals unintended environment variables to the rendering task during template rendering, aka GHSA-6hv3-7c34-4hx8. This applies to nomad/client/allocrunner/taskrunner/template.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

hashicorp nomad

Vendor Advisories

DescriptionThe MITRE CVE dictionary describes this issue as: HashiCorp Nomad 050 through 094 (fixed in 095) reveals unintended environment variables to the rendering task during template rendering, aka GHSA-6hv3-7c34-4hx8 This applies to nomad/client/allocrunner/taskrunner/template ...