SEPTEMBER 15, 2026
Live Feed
Back to database
Case File

CVE-2026-87993

HIGH · CVSS 7.7 EPSS 0.27%

Source: NVD + CISA KEV + EPSS · Published 2026-09-10 · Last synced 2026-09-15

CyberRota Analysis

AI-Generated

The consul-template library has a high-severity vulnerability that can lead to the unintentional exposure of Vault secret values through error messages and logs. This information disclosure risk affects any applications utilizing the library, particularly those integrated with Nomad for task management. Organizations using consul-template should prioritize updating to version 0.43.0 to mitigate this security risk.

CVE
CVE-2026-87993
Severity
HIGH
CVSS
7.7
EPSS
0.27%

Original NVD Description

The consul-template library is vulnerable to an information disclosure issue in its error handling path that may allow Vault secret values to appear in template error messages, log output, and downstream surfaces such as Nomad task events. This vulnerability (CVE-2026-87993) is fixed in consul-template 0.43.0.