
Today we have one from Nomad CVE-2026-14891: HashiCorp Nomad's Docker task driver can be tricked into bind-mounting host paths via a symlink containment bypass, enabling sandbox escape and host file read/write. #sandboxescapeishotagain https://www.pruva.dev/reproductions/REPRO-2026-00385
