From 58234bc243768c5d22409ce25beb3f7b0cbba1fa Mon Sep 17 00:00:00 2001 From: Charlie Voiselle <464492+angrycub@users.noreply.github.com> Date: Wed, 14 Jun 2023 16:26:41 -0400 Subject: [PATCH] redact token before passing to sentinel --- .changelog/17907.txt | 3 +++ 1 file changed, 3 insertions(+) create mode 100644 .changelog/17907.txt diff --git a/.changelog/17907.txt b/.changelog/17907.txt new file mode 100644 index 000000000..3272c0e3a --- /dev/null +++ b/.changelog/17907.txt @@ -0,0 +1,3 @@ +```release-note:security +sentinel (Enterprise): Fixed a bug where ACL tokens could be exfiltrated via Sentinel logs [CVE-2023-3299](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-3299) +```