Hi, I have recently updated consul from 1.8 to 1.16 and i see some behavior change in the KV get raw data http api. While searching i found this:HCSEC-2021-07 - Consul API KV Endpoint Vulnerable to Cross-Site Scripting, so is there a way to preserve the old behavior? i know it is security risk but some of the clients are using that api and breaking the stuff. until we fix all the clients wanted to see if is there a option to preserve the old behavior on fetching raw value on KV data.
Related topics
Topic | Replies | Views | Activity | |
---|---|---|---|---|
HCSEC-2021-07 - Consul API KV Endpoint Vulnerable to Cross-Site Scripting | 0 | 9002 | April 19, 2021 | |
Consul client caching | 1 | 19 | August 20, 2024 | |
Versioned Key/Value in Consul KV | 2 | 3092 | June 13, 2022 | |
How to acces kv by using HTTP API? | 1 | 1021 | March 13, 2022 | |
Consul KV endpoint filtering | 2 | 851 | November 17, 2020 |