Vulnerability CVE-2023-4782


Published: 2023-09-08

Description:
Terraform version 1.0.8 through 1.5.6 allows arbitrary file write during the `init` operation if run on maliciously crafted Terraform configuration. This vulnerability is fixed in Terraform 1.5.7.

 References:
https://discuss.hashicorp.com/t/hcsec-2023-27-terraform-allows-arbitrary-file-write-during-init-operation/58082

Copyright 2026, cxsecurity.com

 

Back to Top