In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsUpgrade github.com/hashicorp/consul/agent/consul
to version 1.11.9, 1.12.5 or higher.
github.com/hashicorp/consul/agent/consul is a distributed, highly available, and data center aware solution to connect and configure applications across dynamic, distributed infrastructure.
Affected versions of this package are vulnerable to Improper Input Validation in the auto-config JWT authorization checks. It allows malicious actors to construct requests which incorrectly pass custom JWT claim validation for the AutoConfig.InitialConfiguration
endpoint.