Security scanning revealed that telegraf may be affected by https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-32574. This CVE affects HashiCorp Consul and Consul Enterprise 1.3.0 through 1.10.0; telegraf uses:
github.com/hashicorp/consul/api v1.8.1
I'm not entirely sure whether the CVE affects the api component as well, but I thought I'd report the bug anyway. According to the CVE note, it has been fixed in hashicorp/consul version 1.8.14.
Security scanning revealed that telegraf may be affected by https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-32574. This CVE affects HashiCorp Consul and Consul Enterprise 1.3.0 through 1.10.0; telegraf uses:
I'm not entirely sure whether the CVE affects the
apicomponent as well, but I thought I'd report the bug anyway. According to the CVE note, it has been fixed inhashicorp/consulversion 1.8.14.