CyberRota Analysis
AI analysis pending.
CVE
CVE-2021-40862
Severity
HIGH
CVSS
8.8
EPSS
0.97%
Original NVD Description
HashiCorp Terraform Enterprise up to v202108-1 contained an API endpoint that erroneously disclosed a sensitive URL to authenticated parties, which could be used for privilege escalation or unauthorized modification of a Terraform configuration. Fixed in v202109-1.
Related CVEs
Other vulnerabilities affecting the same vendor(s)