Nomad enterprise
This hub aggregates every CVE we track for Nomad enterprise, a product in the cloud saas space. Use it to gauge the current risk picture and drill into individual advisories.
20
CVEs tracked
1
Critical
8
High
0
In CISA KEV
Severity distribution
HIGH8MEDIUM8LOW3CRITICAL1
Monthly trend
1
1
0
0
1
1
0
1
1
0
1
1
0
0
0
0
0
0
0
0
0
0
2
0
2024-072026-06
Latest CVEs
The 15 most recently published vulnerabilities affecting Nomad enterprise.
- CVE-2026-7474Nomad vulnerable to path traversal in dynamic host volume which may lead to code execution8.8
- CVE-2026-6959Nomad vulnerable to arbitrary file read/write on client host through symlink attack6.0
- CVE-2025-4922Nomad Vulnerable To Incorrect ACL Policy Lookup Attached To A Job8.1
- CVE-2025-3744Nomad Vulnerable To Violation Of Mandatory Sentinel Policies in Nomad Job Submissions via Policy Override7.6
- CVE-2025-1296Nomad Exposes Sensitive Workload Identity and Client Secret Token in Audit Logs6.5
- CVE-2025-0937Nomad Vulnerable To Event Stream Namespace ACL Policy Bypass Through Wildcard Namespace7.1
- CVE-2024-12678Nomad Allocations Vulnerable To Privilege Escalation Within A Namespace Using Unredacted Workload Identity Tokens6.5
- CVE-2024-10975Nomad Vulnerable To Cross-Namespace Volume Creation Abusing CSI Write Permission7.7
- CVE-2024-7625Nomad Vulnerable to Allocation Directory Escape On Non-Existing File Paths Through Archive Unpacking5.8
- CVE-2024-6717Nomad Vulnerable to Allocation Directory Path Escape Through Archive Unpacking7.7
- CVE-2024-1329Nomad Vulnerable to Arbitrary Write Through Symlink Attack7.7
- CVE-2023-3300Nomad Search API Leaks Information About CSI Plugins5.3
- CVE-2023-3299Nomad Caller ACL Token's Secret ID is Exposed to Sentinel3.4
- CVE-2023-3072Nomad ACL Policies without Label are Applied to Unexpected Resources4.1
- CVE-2023-1782Nomad Unauthenticated Client Agent HTTP Request Privilege Escalation9.9
Product normalization is registry-driven with AI assist and human review. How it works