CVE-2020-7218: Hashicorp Nomad

High severity, CVSS 7.5. EPSS: 1.5% chance of exploitation in the next 30 days.

HashiCorp Nomad and Nonad Enterprise up to 0.10.2 HTTP/RPC services allowed unbounded resource usage, and were susceptible to unauthenticated denial of service. Fixed in 0.10.3.

Affected products

  • Hashicorp Nomad: before 0.10.3 (fixed in 0.10.3)

Published 2020-01-31. Last modified 2026-06-17.