You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Internal Server error "no namespace" on paths /v1/auth/token/lookup, /v1/auth/token/renew, /v1/auth/token/revoke, /v1/auth/token/revoke-orphan when token has random Unicode chars #13273
This was discovered while running a fuzzing tool I wrote for OpenAPI specs: https://github.com/Endava/cats. You can replay all the tests using: ./cats.jar replay --tests="Test232.json,Test644.json,Test1046.json,Test1280.json"
Expected behavior
A 400 response.
Environment:
Vault Server Version (retrieve with vault status): 1.9.0
Vault CLI Version (retrieve with vault version): Vault v1.9.0
Server Operating System/Architecture: macOS Monterey 12.0.1