Cloudflare has patched a cross-tenant data exposure vulnerability in its Containers platform across its global, multi-tenant cloud computing infrastructure that could allow one customer’s workload to recover residual disk data left by another tenant on the same physical host. The issue also affected Cloudflare Sandboxes, which is built on Containers, but Cloudflare says it found no evidence of malicious exploitation or customer data compromise in its retained telemetry. Oren Yomtov, a security researcher at Accomplish, responsibly disclosed the flaw through Cloudflare’s HackerOne bug bounty program on September 4, 2026. Exploitation required a Workers Paid account, and Cloudflare’s automatic workload placement meant an...
Les hele artikkelen hos kilden.
Kommentarer (0)
Ingen kommentarer ennå. Bli den første til å kommentere!