cortex icon indicating copy to clipboard operation
cortex copied to clipboard

Bump consul to 1.11.3 due to CVE-2022-24687

Open sergiodj opened this issue 2 years ago • 1 comments

Ref.: https://www.cve.org/CVERecord?id=CVE-2022-24687

I'm not entirely sure whether cortex uses consul's Ingress Gateway feature, but I found several uses of IngressGateway inside the github.com/hashicorp/consul/api module, so I think it's a good idea to bump consul to 1.11.3 in order to mitigate the CVE.

Thanks.

sergiodj avatar Mar 22 '22 18:03 sergiodj

This issue has been automatically marked as stale because it has not had any activity in the past 60 days. It will be closed in 15 days if no further activity occurs. Thank you for your contributions.

stale[bot] avatar Jun 23 '22 01:06 stale[bot]