alt.hn

2/6/2026 at 8:04:55 PM

Masked namespace vulnerability in Temporal

https://depthfirst.com/post/the-masked-namespace-vulnerability-in-temporal-cve-2025-14986

by bmit

2/6/2026 at 9:46:02 PM

Even in a product as technically wonderful as Temporal, we can have relatively simple oversights like this that lead to cross tenant leakage.

If anyone is more familiar with Temporal, is there a way clients could have had internal defense in depth that guards against tenant leakage at the provider (Temporal) level?

by haneul

2/7/2026 at 1:37:09 AM

Don't use namespaces. Wire up multi-tenant at the RBAC level. Need stronger isolation? Run another cluster.

by jiggunjer

2/7/2026 at 2:40:57 AM

Encrypting tenant data with per tenant keys is a good defense against this kind of thing.

by UltraSane

2/6/2026 at 10:03:31 PM

Things like this are inevitable, especially these days.

by bdj108