CuraDevOps

Plan archived

OpenTofu v1.11.13 patches ECH key-identity leak

2026-07-27 14:28 UTC · Releases: opentofu · read the source ↗ #opentofu#security#iac
  • Platform/SRE — Plan: A security fix for an ECH pre-shared key identity leak in OpenTofu v1.11.x warrants upgrading to v1.11.13; no KEV listing or active exploitation reported, so this is a planned patch rather than an emergency — schedule the upgrade this sprint.
  • CI/CD — Skip
  • Leader — Skip
This entry was curated and judged by AI (Claude) with automated enrichment (CISA KEV / EPSS / public PoC). Verify against the original source before acting. Found a bad verdict? Report it — confirmed errors go to the corrections log.