Browse Source

Merge pull request #11557 from hashicorp/dnephin/changelog-namespace-default

Add changelog entry for namespace default policy/role fix
pull/11567/head
Daniel Nephin 3 years ago committed by GitHub
parent
commit
81759c7a41
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
  1. 3
      .changelog/_1238.txt

3
.changelog/_1238.txt

@ -0,0 +1,3 @@
```release-note:security
namespaces: **(Enterprise only)** Creating or editing namespaces that include default ACL policies or ACL roles now requires `acl:write` permission in the default namespace. This change fixes CVE-2021-41805.
```
Loading…
Cancel
Save