#685 TXN-02: Race condition in rate limiter token consumption

closed critical Created 2025-12-25 02:55 · Updated 2025-12-25 03:11

Description

Edit
Location: tenant_rate_limiter.py:72-96. Issue: UPDATE with computation in WHERE clause without FOR UPDATE lock. Multiple workers can read same token count and all consume. Fix: Use SELECT FOR UPDATE NOWAIT before computing availability.

Comments

Loading comments...

Context

Loading context...

Audit History

View All
Loading audit history...