CyberRota Analysis
AI analysis pending.
CVE
CVE-2021-43415
Severity
HIGH
CVSS
8.8
EPSS
1.18%
Original NVD Description
HashiCorp Nomad and Nomad Enterprise up to 1.0.13, 1.1.7, and 1.2.0, with the QEMU task driver enabled, allowed authenticated users with job submission capabilities to bypass the configured allowed image paths. Fixed in 1.0.14, 1.1.8, and 1.2.1.