Tags: Replication
-
No I/O Before Auth, No Privilege From Headers
This record describes the CORS hot-path and replication-request trust repair committed locally in SILO as 938603458. Status on 2026-09-02: implementation, focused and race tests, the complete server package suite, object-lock tests, vet, build, two …
This record describes the CORS hot-path and replication-request trust repair committed locally in SILO as 938603458. Status on 2026-09-02: implementation, focused and race tests, the complete server package suite, object-lock tests, vet, build, two …
-
CVE-2026-34204: Replication Metadata Injection
Status: Released First containing release: RELEASE.2026-04-17T00-00-00Z GitHub issue: pgsty/minio#24 Ordinary PUT and COPY requests could smuggle X-Minio-Replication-* headers into internal X-Minio-Internal-* SSE metadata, creating objects whose …
Status: Released First containing release: RELEASE.2026-04-17T00-00-00Z GitHub issue: pgsty/minio#24 Ordinary PUT and COPY requests could smuggle X-Minio-Replication-* headers into internal X-Minio-Internal-* SSE metadata, creating objects whose …