CVE-2025-0937
12.02.2025, 19:15
Nomad Community and Nomad Enterprise ("Nomad") event stream configured with a wildcard namespace can bypass the ACL Policy allowing reads on other namespaces.Enginsight| Vendor | Product | Version |
|---|---|---|
| hashicorp | nomad | 1.0.0 ≤ 𝑥 < 1.7.18 |
| hashicorp | nomad | 1.0.0 ≤ 𝑥 < 1.9.6 |
| hashicorp | nomad | 1.8.0 ≤ 𝑥 < 1.8.10 |
| hashicorp | nomad | 1.9.0 ≤ 𝑥 < 1.9.6 |
𝑥
= Vulnerable software versions
Ubuntu Releases