Merge pull request #11557 from hashicorp/dnephin/changelog-namespace-default

Add changelog entry for namespace default policy/role fix
This commit is contained in:
Daniel Nephin 2021-11-12 12:19:42 -05:00 committed by GitHub
commit 81759c7a41
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 3 additions and 0 deletions

3
.changelog/_1238.txt Normal file
View File

@ -0,0 +1,3 @@
```release-note:security
namespaces: **(Enterprise only)** Creating or editing namespaces that include default ACL policies or ACL roles now requires `acl:write` permission in the default namespace. This change fixes CVE-2021-41805.
```