Consul and Consul Enterprise allowed an authenticated user with service:write permissions to trigger a workflow that causes Consul server and client agents to crash under certain circumstances. This vulnerability was fixed in Consul 1.14.5.
{ "cpes": [ "cpe:2.3:a:hashicorp:consul:*:*:*:*:-:*:*:*" ], "severity": "Medium" }