Masked namespace vulnerability in Temporal

(depthfirst.com)

22 points | by bmit 2 hours ago ago

2 comments

  • haneul 37 minutes ago

    Even in a product as technically wonderful as Temporal, we can have relatively simple oversights like this that lead to cross tenant leakage.

    If anyone is more familiar with Temporal, is there a way clients could have had internal defense in depth that guards against tenant leakage at the provider (Temporal) level?

    • bdj108 19 minutes ago

      Things like this are inevitable, especially these days.