CVEInsight.
TrendingZero-DayExploreBrowseSearchSaved
CVEInsight.

Free vulnerability intelligence for developers, security teams, and researchers. Data sourced from public databases for informational purposes only.

Explore

HomeTrendingZero-Day WatchAttack TypesBrowse CVEsSearch

Legal

Privacy PolicyTerms of ServiceData Disclaimer

© 2026CVEInsight. For informational use only — not a substitute for professional security advice.

CVE data sourced from NVD / NIST & public disclosures.

hashicorp

nomad

36 known vulnerabilities · sorted by CVSS score

CVE-2023-1782
CRITICAL9.9

HashiCorp Nomad and Nomad Enterprise versions 1.5.0 up to 1.5.2 allow unauthenticated users to bypass intended ACL authorizations for clusters where mTLS is not enabled. This issue is fixed in version 1.5.3.

hashicorp / nomad+1
Network
Published Apr 5, 2023
Page 1 of 2
CVE-2020-7956
CRITICAL9.8

HashiCorp Nomad and Nomad Enterprise up to 0.10.2 incorrectly validated role/region associated with TLS certificates used for mTLS RPC, and were susceptible to privilege escalation. Fixed in 0.10.3.

hashicorp / nomad+1
Network
Published Jan 31, 2020
CVE-2019-12618
CRITICAL9.8

HashiCorp Nomad 0.9.0 through 0.9.1 has Incorrect Access Control via the exec driver.

hashicorp / nomad
Network
Published Aug 12, 2019
CVE-2022-30324
CRITICAL9.8

HashiCorp Nomad and Nomad Enterprise version 0.2.0 up to 1.3.0 were impacted by go-getter vulnerabilities enabling privilege escalation through the artifact stanza in submitted jobs onto the client agent host. Fixed in 1.1.14, 1.2.8, and 1.3.1.

hashicorp / nomad+5
Network
Published Jun 2, 2022
CVE-2020-27195
CRITICAL9.1

HashiCorp Nomad and Nomad Enterprise version 0.9.0 up to 0.12.5 client file sandbox feature can be subverted using either the template or artifact stanzas. Fixed in 0.12.6, 0.11.5, and 0.10.6

hashicorp / nomad+5
Network
Published Oct 22, 2020
CVE-2021-37218
HIGH8.8

HashiCorp Nomad and Nomad Enterprise Raft RPC layer allows non-server agents with a valid certificate signed by the same CA to access server-only functionality, enabling privilege escalation. Fixed in 1.0.10 and 1.1.4.

hashicorp / nomad+3
Network
Published Sep 7, 2021
CVE-2021-43415
HIGH8.8

HashiCorp Nomad and Nomad Enterprise up to 1.0.13, 1.1.7, and 1.2.0, with the QEMU task driver enabled, allowed authenticated users with job submission capabilities to bypass the configured allowed image paths. Fixed in 1.0.14, 1.1.8, and 1.2.1.

hashicorp / nomad+5
Network
Published Dec 3, 2021
CVE-2025-4922
HIGH8.1

Nomad Community and Nomad Enterprise (“Nomad”) prefix-based ACL policy lookup can lead to incorrect rule application and shadowing. This vulnerability, identified as CVE-2025-4922, is fixed in Nomad Community Edition 1.10.2 and Nomad Enterprise 1.10.2, 1.9.10, and 1.8.14.

hashicorp / nomad+3
Network
Published Jun 11, 2025
CVE-2024-1329
HIGH7.7

HashiCorp Nomad and Nomad Enterprise 1.5.13 up to 1.6.6, and 1.7.3 template renderer is vulnerable to arbitrary file write on the host as the Nomad client user through symlink attacks. This vulnerability, CVE-2024-1329, is fixed in Nomad 1.7.4, 1.6.7, and 1.5.14.

hashicorp / nomad+5
Network
Published Feb 8, 2024
CVE-2024-6717
HIGH7.7

HashiCorp Nomad and Nomad Enterprise 1.6.12 up to 1.7.9, and 1.8.1 archive unpacking during migration is vulnerable to path escaping of the allocation directory. This vulnerability, CVE-2024-6717, is fixed in Nomad 1.6.13, 1.7.10, and 1.8.2.

hashicorp / nomad+5
Network
Published Jul 23, 2024
CVE-2024-10975
HIGH7.7

Nomad Community and Nomad Enterprise ("Nomad") volume specification is vulnerable to arbitrary cross-namespace volume creation through unauthorized Container Storage Interface (CSI) volume writes. This vulnerability, identified as CVE-2024-10975, is fixed in Nomad Community Edition 1.9.2 and Nomad Enterprise 1.9.2, 1.8.7, and 1.7.15.

hashicorp / nomad+3
Network
Published Nov 7, 2024
CVE-2025-3744
HIGH7.6

Nomad Enterprise (“Nomad”) jobs using the policy override option are bypassing the mandatory sentinel policies. This vulnerability, identified as CVE-2025-3744, is fixed in Nomad Enterprise 1.10.1, 1.9.9, and 1.8.13.

hashicorp / nomad+4
Network
Published May 13, 2025
CVE-2022-24683
HIGH7.5

HashiCorp Nomad and Nomad Enterprise 0.9.2 through 1.0.17, 1.1.11, and 1.2.5 allow operators with read-fs and alloc-exec (or job-submit) capabilities to read arbitrary files on the host filesystem as root.

hashicorp / nomad+5
Network
Published Feb 17, 2022
CVE-2021-3283
HIGH7.5

HashiCorp Nomad and Nomad Enterprise up to 0.12.9 exec and java task drivers can access processes associated with other tasks on the same node. Fixed in 0.12.10, and 1.0.3.

hashicorp / nomad+3
Network
Published Feb 1, 2021
CVE-2020-7218
HIGH7.5

HashiCorp Nomad and Nonad Enterprise up to 0.10.2 HTTP/RPC services allowed unbounded resource usage, and were susceptible to unauthenticated denial of service. Fixed in 0.10.3.

hashicorp / nomad+1
Network
Published Jan 31, 2020
CVE-2022-24685
HIGH7.5

HashiCorp Nomad and Nomad Enterprise 1.0.17, 1.1.11, and 1.2.5 allow invalid HCL for the jobs parse endpoint, which may cause excessive CPU usage. Fixed in 1.0.18, 1.1.12, and 1.2.6.

hashicorp / nomad+5
Network
Published Feb 28, 2022
CVE-2023-1299
HIGH7.4

HashiCorp Nomad and Nomad Enterprise 1.5.0 allow a job submitter to escalate to management-level privileges using workload identity and task API. Fixed in 1.5.1.

hashicorp / nomad+1
Network
Published Mar 14, 2023
CVE-2025-0937
HIGH7.1

Nomad Community and Nomad Enterprise ("Nomad") event stream configured with a wildcard namespace can bypass the ACL Policy allowing reads on other namespaces.

hashicorp / nomad+3
Network
Published Feb 12, 2025
CVE-2022-41606
MEDIUM6.5

HashiCorp Nomad and Nomad Enterprise 1.0.2 up to 1.2.12, and 1.3.5 jobs submitted with an artifact stanza using invalid S3 or GCS URLs can be used to crash client agents. Fixed in 1.2.13, 1.3.6, and 1.4.0.

hashicorp / nomad+3
Network
Published Oct 12, 2022
CVE-2020-28348
MEDIUM6.5

HashiCorp Nomad and Nomad Enterprise 0.9.0 up to 0.12.7 client Docker file sandbox feature may be subverted when not explicitly disabled or when using a volume mount type. Fixed in 0.12.8, 0.11.7, and 0.10.8.

hashicorp / nomad+5
Network
Published Nov 24, 2020