Understanding Cross-Tenant BOLA Vulnerability in stigmem-node
This educational analysis covers a critical vulnerability in stigmem-node, a multi-tenant node that mishandles RTBF tombstones, leading to cross-tenant BOLA (Broken Object Level Authorization). The vulnerability allows an attacker to mis-attribute and suppress reads tenant-blind, compromising data-view correctness and RTBF guarantees.