From 5b84e926560dcb826bc9f640340c2beff6c68e9a Mon Sep 17 00:00:00 2001 From: Daniel Nephin Date: Thu, 11 Nov 2021 16:09:00 -0500 Subject: [PATCH] Add changelog entry --- .changelog/_1238.txt | 3 +++ 1 file changed, 3 insertions(+) create mode 100644 .changelog/_1238.txt diff --git a/.changelog/_1238.txt b/.changelog/_1238.txt new file mode 100644 index 000000000..79cb4b142 --- /dev/null +++ b/.changelog/_1238.txt @@ -0,0 +1,3 @@ +```release-note:security +namespaces: **(Enterprise only)** Creating or editing namespaces that include default ACL policies or ACL roles now requires `acl:write` permission in the default namespace. This change fixes CVE-2021-41805. +```