Masked namespace vulnerability in Temporal

depthfirst.com

28 points by bmit 6 hours ago


haneul - 4 hours ago

Even in a product as technically wonderful as Temporal, we can have relatively simple oversights like this that lead to cross tenant leakage.

If anyone is more familiar with Temporal, is there a way clients could have had internal defense in depth that guards against tenant leakage at the provider (Temporal) level?