1sealsemantic last-mile verification

Research / Finding

Trivy Terraform filesystem functions read paths above the scan root

F-TRIVY-TF-FILE-001

Public snapshot: 8 Oct 2026. Status, releases and attribution belong to each source below; none is inferred from another record.

Read the evidence · View in research browse

Recorded evidence

2.5low
CVE-2026-104994CVEaquasecurity/trivy

Trivy Terraform filesystem functions read paths above the scan root

Fixed in: Trivy 0.71.0

patched
details
Finding IDs
F-TRIVY-TF-FILE-001
CVE
CVE-2026-104994
Status
patched
Fixed in
Trivy 0.71.0
Note
The published CVE covers Trivy before 0.71.0 when Terraform filesystem functions access paths above the scan root during misconfiguration scanning of untrusted input. Exposure requires sensitive data at an unintended path and visibility of that value in scan output. The vendor advisory GHSA-87hp-4m93-274g remains closed and is not presented as a published advisory.
CVSS vector
CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:L/I:N/A:N
CVE registry state
PUBLISHED
CVE state checked
CVSS assessment
MITRE CVE record; v3.1; 2.5; observed 2026-10-06

F-TRIVY-TF-FILE-001: File / path escapes. Terraform file functions read outside the scan root. Reviewed 24 Sep 2026. Mechanism assessed by 1seal.

Mechanism source for F-TRIVY-TF-FILE-001

Security area (1seal assessment): Authorization. Terraform filesystem functions can read outside the scan root. Reviewed 6 Oct 2026.

—score not recorded
aquasecurity/trivyReported fixaquasecurity/trivy

sandbox Terraform filesystem functions

fixed in Trivy v0.71.0+
details
Finding IDs
F-TRIVY-TF-FILE-001
Status
fixed in Trivy v0.71.0+
Reported via
security contact
Note
revalidated with a minimal Terraform file("../secret.txt") PoC through mapfs.WithUnderlyingRoot: Trivy v0.70.0 reads POC_SECRET from outside the scan root, while v0.71.0 and v0.71.2 block traversal with no file exists at ../secret.txt. upstream fix commit 9d91b888cf63 shipped in v0.71.0 and makes Terraform filesystem functions use a sandboxed FS without access to the underlying OS root. CVE-2026-104994 was published on 2026-10-02 for this Terraform filesystem-function issue.

F-TRIVY-TF-FILE-001: File / path escapes. Terraform file functions read outside the scan root. Reviewed 24 Sep 2026. Mechanism assessed by 1seal.

Mechanism source for F-TRIVY-TF-FILE-001

Security area (1seal assessment): Authorization. Terraform file functions read outside the scan root. Reviewed 24 Sep 2026.

Clarify or correct this record privately. The email subject includes the finding ID. For an existing case, continue the agreed private thread. Do not post unpublished vulnerability details in public issues. Research disclosure policy.

How this page groups evidence

This identifier groups recorded evidence; it is not an additional CVE, independent-vulnerability count or guarantee of vendor confirmation. Fixed code, released versions, attribution and independent discovery are distinct claims. Absent metadata means not recorded, not disproved. Counting rules.