VDB

CVE-2019-14802

CVE-2019-14802 PUBLISHED

HashiCorp Nomad 0.5.0 through 0.9.4 (fixed in 0.9.5) reveals unintended environment variables to the rendering task during template rendering, aka GHSA-6hv3-7c34-4hx8. This applies to nomad/client/allocrunner/taskrunner/template.

EPSS 0.24% · 46.9th percentile

Risk Scores

EPSS Score
0.24%
46.9th percentile

Affected Products

VendorProductVersions
Ubuntu:20.04:LTSnomad0, 0.8.7+dfsg1-1ubuntu1
Ubuntu:18.04:LTSnomad0, *

Timeline

  • Feb 15, 2022 CVE Published
  • Dec 27, 2022 EPSS Score
  • Feb 6, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Mar 20, 2023 EPSS Score
  • Apr 30, 2023 EPSS Score
  • Jun 10, 2023 EPSS Score
  • Jul 22, 2023 EPSS Score
  • Sep 1, 2023 EPSS Score
  • Oct 12, 2023 EPSS Score
  • Nov 22, 2023 EPSS Score
  • Jan 3, 2024 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›