CVEs we hold for Hashicorp
Records whose assigning authority named Hashicorp as the affected vendor. Newest identifiers first, capped at 200.
CVE-2026-88922Go-getter vulnerable to a privilege escalation issue in its archive decompression handlingHashiCorp Shared library
CVE-2026-88021Consul vulnerable to an authorization bypass in the Connect service meshHashiCorp Consul Enterprise
CVE-2026-87993Consul-template vulnerable to an information disclosure issue in error handlingHashiCorp Tooling
CVE-2026-8715Vault Secrets Operator vulnerable to arbitrary file read and credential exfiltration via AppRole secretIDPathHashiCorp Tooling
CVE-2026-87107Consul vulnerable to an authorization bypass in the catalog deregistration pathHashiCorp Consul Enterprise
CVE-2026-87106Consul vulnerable to a denial of service in the native RPC listenerHashiCorp Consul Enterprise
CVE-2026-87090Consul vulnerable to an authorization bypass in the catalog node-write pathHashiCorp Consul Enterprise
CVE-2026-8052Nomad's exec2 task driver vulnerable to arbitrary file read/write on client host through symlink attackHashiCorp Shared library
CVE-2026-7776Boundary Workers Vulnerable to Denial of Service During TLS HandshakeHashiCorp Boundary Enterprise
CVE-2026-7474Nomad vulnerable to path traversal in dynamic host volume which may lead to code executionHashiCorp Nomad Enterprise
CVE-2026-6959Nomad vulnerable to arbitrary file read/write on client host through symlink attackHashiCorp Nomad Enterprise
CVE-2026-5807Vault Vulnerable to Denial-of-Service via Unauthenticated Root Token Generation/Rekey OperationsHashiCorp Vault Enterprise
CVE-2026-5061Consul-template vulnerable to sandbox path bypass in file helper via a symlink attackHashiCorp Tooling
CVE-2026-5052Vault Vulnerable to Server-Side Request Forgery in ACME Challenge Validation via Attacker-Controlled DNSHashiCorp Vault Enterprise
CVE-2026-5051Audit Log Plugin Directory Guard Bypass via Legacy path OptionHashiCorp Vault Enterprise
CVE-2026-5006Vault Vulnerable to Privilege Escalation via Slash Injection in Templated Policy PathsHashiCorp Vault Enterprise
CVE-2026-4660Go-getter may allow to arbitrary filesystem reads through git operationsHashiCorp Tooling
CVE-2026-4525Vault Token Leaked to Backends via Authorization: Bearer Passthrough HeaderHashiCorp Vault Enterprise
CVE-2026-3605Vault KVv2 Metadata and Secret Deletion Policy Bypass Denial-of-ServiceHashiCorp Vault Enterprise
CVE-2026-2808Consul vulnerable to arbitrary file reads through the vault kubernetes authentication providerHashiCorp Consul Enterprise
CVE-2026-19589Packer vulnerable to arbitrary file write via crafted plugin archive during installationHashiCorp Packer
CVE-2026-19113Unauthenticated denial of service via unbounded request body processingHashiCorp Consul Enterprise
CVE-2026-19017Consul vulnerable to partial arbitrary file read via Vault Connect CA providerHashiCorp Consul Enterprise
CVE-2026-19016Authorization bypass for session deletion in the transaction APIHashiCorp Consul Enterprise
CVE-2026-19015Uncontrolled resource consumption in the Consul Connect CA roots endpointHashiCorp Consul Enterprise
CVE-2026-19014Uncontrolled resource consumption in the Consul Connect authorization endpointHashiCorp Consul Enterprise
CVE-2026-19012Authenticated denial of service in Consul Enterprise-to-Community Edition downgrade pathHashiCorp Consul Enterprise
CVE-2026-16498terraform-mcp-server vulnerable to cross-tenant credential reuse in streamable-HTTP stateless modeHashiCorp Tooling
CVE-2026-16496terraform-mcp-server vulnerable to cross-user credential inheritance if an MCP session ID is obtained by another userHashiCorp Tooling
CVE-2026-16328consul-mcp-server vulnerable to server side request forgery leading to token exposureHashiCorp Tooling
CVE-2026-16326consul-mcp-server vulnerable to cross-tenant credential reuse in streamable-HTTP stateless modeHashiCorp Tooling
CVE-2026-15972Unauthenticated denial of service via unbounded external gRPC connection acceptanceHashiCorp Consul Enterprise
CVE-2026-15970L7 intention authorization bypass via custom public listenerHashiCorp Consul Enterprise
CVE-2026-14978Unicode normalization mismatch in go-slug ignore pattern matching may bypass intended file exclusionsHashiCorp go-slug
CVE-2026-14896Nomad vulnerable to cross-namespace host volume claim deletionHashiCorp Nomad Enterprise
CVE-2026-14886Vault Enterprise vulnerable to cross-namespace entity deletionHashiCorp Vault Enterprise
CVE-2026-14869terraform-mcp-server vulnerable to server side request forgery leading to token exposureHashiCorp Tooling
CVE-2026-14468Path traversal allows arbitrary file read in Terraform Enterprise containerHashiCorp Terraform Enterprise
CVE-2026-14362Denial of service via crafted push/pull gossip message in memberlistHashiCorp Shared library
CVE-2026-14361Consul-template is vulnerable to path redirection in writeToFile through symlink attackHashiCorp Tooling
CVE-2026-12624Vault vulnerable to LIST authorization bypass via trailing-slash stripHashiCorp Vault Enterprise
CVE-2026-0969Arbitrary code execution in React server-side rendering of untrusted MDX contentHashiCorp Shared library
CVE-2025-8959HashiCorp go-getter Vulnerable to Arbitrary Read through Symlink AttackHashiCorp Shared library
CVE-2025-6203Vault unauthenticated denial of service through complex json payloadHashiCorp Vault Enterprise
CVE-2025-6037Vault Certificate Auth Method Did Not Validate Common Name For Non-CA CertificatesHashiCorp Vault Enterprise
CVE-2025-6013Vault LDAP MFA Enforcement Bypass When Using Username As AliasHashiCorp Vault Enterprise
CVE-2025-4922Nomad Vulnerable To Incorrect ACL Policy Lookup Attached To A JobHashiCorp Nomad Enterprise
CVE-2025-4656Vault Vulnerable to Recovery Key Cancellation Denial of ServiceHashiCorp Vault Enterprise
CVE-2025-4166Vault May Include Sensitive Data in Error Logs When Using the KV v2 PluginHashiCorp Vault Enterprise
CVE-2025-3879Vault’s Azure Authentication Method bound_location Restriction Could be Bypassed on LoginHashiCorp Vault Enterprise
CVE-2025-3744Nomad Vulnerable To Violation Of Mandatory Sentinel Policies in Nomad Job Submissions via Policy OverrideHashiCorp Nomad Enterprise
CVE-2025-13432Terraform Enterprise state versions can be created by users with specific permissions without sufficient write accessHashiCorp Terraform Enterprise
CVE-2025-13357Vault Terraform Provider Applied Incorrect Defaults for LDAP Auth MethodHashiCorp Tooling
CVE-2025-1296Nomad Exposes Sensitive Workload Identity and Client Secret Token in Audit LogsHashiCorp Nomad Enterprise
CVE-2025-1293HashiCorp Hermes Improperly Validates AWS ALB JWTs, which May Lead to Authentication BypassHashiCorp Tooling
CVE-2025-12044Vault Vulnerable to Denial of Service Due to Rate Limit RegressionHashiCorp Vault Enterprise
CVE-2025-0937Nomad Vulnerable To Event Stream Namespace ACL Policy Bypass Through Wildcard NamespaceHashiCorp Nomad Enterprise
CVE-2024-9180Vault Operators in Root Namespace May Elevate Their PrivilegesHashiCorp Vault Enterprise
CVE-2024-8185Vault Vulnerable to Denial of Service When Processing Raft Join RequestsHashiCorp Vault Enterprise
CVE-2024-7625Nomad Vulnerable to Allocation Directory Escape On Non-Existing File Paths Through Archive UnpackingHashiCorp Nomad Enterprise
CVE-2024-7594Vault SSH Secrets Engine Configuration Did Not Restrict Valid Principals By DefaultHashiCorp Vault Enterprise
CVE-2024-6717Nomad Vulnerable to Allocation Directory Path Escape Through Archive UnpackingHashiCorp Nomad Enterprise
CVE-2024-6468Vault Vulnerable to Denial of Service When Setting a Proxy Protocol BehaviorHashiCorp Vault Enterprise
CVE-2024-6257HashiCorp go-getter Vulnerable to Code Execution On Git Update Via Git Config ManipulationHashiCorp Shared library
CVE-2024-5798Vault Incorrectly Validated JSON Web Tokens (JWT) Audience ClaimsHashiCorp Vault Enterprise
CVE-2024-3817HashiCorp go-getter Vulnerable to Argument Injection When Fetching Remote Default Git BranchesHashiCorp Shared library
CVE-2024-2877Vault Enterprise Leaks Sensitive HTTP Request Headers in the Audit Log When Deployed With a Performance Standby NodeHashiCorp Vault Enterprise
CVE-2024-2660Vault TLS Cert Auth Method Did Not Correctly Validate OCSP ResponsesHashiCorp Vault Enterprise
CVE-2024-2048Vault Cert Auth Method Did Not Correctly Validate Non-CA CertificatesHashiCorp Vault Enterprise
CVE-2024-12678Nomad Allocations Vulnerable To Privilege Escalation Within A Namespace Using Unredacted Workload Identity TokensHashiCorp Nomad Enterprise
CVE-2024-12289Boundary Controller Incorrectly Handles HTTP Requests On Initialization Which May Lead to a Denial of ServiceHashiCorp Boundary Enterprise
CVE-2024-10975Nomad Vulnerable To Cross-Namespace Volume Creation Abusing CSI Write PermissionHashiCorp Nomad Enterprise
CVE-2024-1052Boundary Vulnerable to Session Hijacking Through TLS Certificate TamperingHashiCorp Boundary Enterprise
CVE-2024-10228Vagrant VMWare Utility installation files vulnerable to modification by unprivileged userHashiCorp Vagrant
CVE-2024-10086Consul Vulnerable To Reflected XSS On Content-Type Error ManipulationHashiCorp Consul Enterprise
CVE-2024-0831Vault May Expose Sensitive Information When Configuring An Audit Log DeviceHashiCorp Vault Enterprise
CVE-2023-6337Vault May be Vulnerable to a Denial of Service Through Memory Exhaustion When Handling Large HTTP RequestsHashiCorp Vault Enterprise
CVE-2023-5954Vault Requests Triggering Policy Checks May Lead To Unbounded Memory ConsumptionHashiCorp Vault Enterprise
CVE-2023-5077Vault's Google Cloud Secrets Engine Removed Existing IAM Conditions When Creating / Updating RolesetsHashiCorp Vault Enterprise
CVE-2023-4680Vault's Transit Secrets Engine Allowed Nonce Specified without Convergent EncryptionHashiCorp Vault Enterprise
CVE-2023-3775Vault Enterprise's Sentinel RGP Policies Allowed For Cross-Namespace Denial of ServiceHashiCorp Vault Enterprise
CVE-2023-3774Vault Enterprise Namespace Creation May Lead to Denial of ServiceHashiCorp Vault Enterprise
CVE-2023-3518JWT Auth in L7 Intentions Allow For Mismatched Service Identity and JWT Providers for AccessHashiCorp Consul Enterprise
CVE-2023-3114Terraform Enterprise Agent Pool Controls Allowed Unauthorized Workspaces To Target an Agent PoolHashiCorp Terraform Enterprise
CVE-2023-3072Nomad ACL Policies without Label are Applied to Unexpected ResourcesHashiCorp Nomad Enterprise
CVE-2023-2816Consul Envoy Extension Downsteam Proxy Configuration By Upstream Service OwnerHashiCorp Consul Enterprise
CVE-2023-25000Vault Vulnerable to Cache-Timing Attacks During Seal and Unseal OperationsHashiCorp Vault Enterprise
CVE-2023-24999Vault Fails to Verify if the AppRole SecretID Belongs to Role During a Destroy OperationHashiCorp Vault Enterprise
CVE-2023-2197Vault Enterprise Vulnerable to Padding Oracle Attacks When Using a CBC-based Encryption Mechanism with a HSMHashiCorp Vault Enterprise
CVE-2023-1782Nomad Unauthenticated Client Agent HTTP Request Privilege EscalationHashiCorp Nomad Enterprise
CVE-2023-1299Nomad Job Submitter Privilege Escalation Using Workload IdentityHashiCorp Nomad Enterprise
CVE-2023-0845Consul Server Panic when Ingress and API Gateways Configured with PeeringHashiCorp Consul Enterprise
CVE-2023-0821Nomad Client Vulnerable to Decompression Bombs in Artifact BlockHashiCorp Nomad Enterprise
CVE-2023-0690Boundary Workers Store Rotated Credentials in Plaintext Even When a Key Management Service ConfiguredHashiCorp Boundary
CVE-2023-0665Vault PKI Issuer Endpoint Did Not Correctly Authorize Access to Issuer MetadataHashiCorp Vault Enterprise
CVE-2023-0620Vault Vulnerable to SQL Injection When Configuring the Microsoft SQL Database Storage BackendHashiCorp Vault Enterprise
CVE-2022-3867Nomad Event Stream Subscriber Using a Token with TTL Receives Updates Until Garbage CollectedHashiCorp Nomad Enterprise
CVE-2022-3866Nomad Workload Identity Token Can List Non-sensitive Metadata for Paths Under nomad/HashiCorp Nomad Enterprise
125 records, read from the index as it stood on 20 Sep 2026. Every row opens the record it names, and every value on that record opens its own receipt.
Everything on this page is free. Public data. Withholding it protects nothing.