Description
The consul-template library before version 0.42.0 is vulnerable to a sandbox path bypass in the file template helper that may allow reading an out-of-sandbox file. This vulnerability (CVE-2026-5061) is fixed in consul-template 0.42.0.
Problem types
CWE-59: Improper Link Resolution Before File Access (Link Following)
Product status
0.1.0 (semver) before 0.42.0
Credits
This issue was reported to HashiCorp by Mohamed Abdelaal (0xmrma).
References
discuss.hashicorp.com/...helper-through-symlink-attack/77414