Junglewise Threat Intelligence

CVE-2025-1296: GO-2025-3510 - Unintentional exposure of the workload identity token and client secret in logs in github.com/hashicorp/nomad

CVE-2025-1296 · Severity: low · CVSS 3.1 · Published 2025-03-13

Technologies: github.com/hashicorp/nomad (Go). Vendors: Go.

Executive brief

Unintentional exposure of the workload identity token and client secret in logs in github.com/hashicorp/nomad

Affected products

  • Go github.com/hashicorp/nomad

Related threats