Main
Vulnerability Database
Exploits
ID:13051 - Exploit for Path traversal in Nomad Enterprise and Nomad - CVE-2026-7474
ID:13051 - Exploit for Path traversal in Nomad Enterprise and Nomad - CVE-2026-7474
Published: September 4, 2026
Vulnerability identifier: #VU146963
Vulnerability risk: Medium
CVE-ID: CVE-2026-7474
CWE-ID: CWE-22
Exploitation vector: Remote access
Vulnerable software:
Nomad Enterprise
Nomad
Nomad Enterprise
Nomad
Link to public exploit:
Vulnerability description
The vulnerability allows a remote attacker to access files outside the intended directory.
The vulnerability exists due to improper limitation of a pathname to a restricted directory in Nomad Enterprise when processing crafted path input. A remote attacker can supply a crafted path to access files outside the intended directory.
Remediation
Install security update from vendor's website.