mirror of https://github.com/status-im/consul.git
3 lines
299 B
Plaintext
3 lines
299 B
Plaintext
|
```release-note:security
|
||
|
connect: Added URI length checks to ConnectCA CSR requests. Prior to this change, it was possible for a malicious actor to designate multiple SAN URI values in a call to the `ConnectCA.Sign` endpoint. The endpoint now only allows for exactly one SAN URI to be specified.
|
||
|
```
|