Report: CVE-2026-7474 - Nomad vulnerable to path traversal in dynamic host volume which may lead to code

Report: CVE-2026-7474 - Nomad vulnerable to path traversal in dynamic host volume which may lead to code

CVE ID :CVE-2026-7474 Published : May 12, 2026, 8:16 p.m. | 1 hour ago Description :HashiCorp Nomad and Nomad Enterprise prior to 2.0.1 are vulnerable to code execution on the client host through a path traversal attack. This vulnerability (CVE-2026-7474) is fixed in Nomad 2.0.1, 1.11.5 and 1.10.11. Severity: 8.8 | HIGH Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
HIGH
Published
May 12, 2026
Affected Product: HashiCorp
Impact: code execution