This page lists publicly disclosed CVE vulnerabilities affecting hashicorp sentinel (linked via NVD CPE). Each row includes severity scores, summaries, and publication dates to help identify and analyze security issues.
| CVE | Summary | Source | Max CVSS | EPSS % | Published | Updated |
|---|---|---|---|---|---|---|
| CVE-2021-44139 | Sentinel 1.8.2 is vulnerable to Server-side request forgery (SSRF). | [email protected] | 7.5 | 6.49% | 2022-03-23 | 2024-11-21 |
| CVE-2019-19879 | HashiCorp Sentinel up to 0.10.1 incorrectly parsed negation in certain policy expressions. Fixed in 0.10.2. | [email protected] | 7.5 | 1.19% | 2020-02-14 | 2024-11-21 |