- Feb 07, 2023
-
-
BlockListed authored
-
BlockListed authored
-
- Feb 06, 2023
-
-
BlockListed authored
Vaultwarden send won't work if the domain includes a trailing slash. This should be documented, as it may lead to confusion amoung users.
-
- Jan 24, 2023
-
-
Daniel García authored
Remove `arm32v6`-specific tag
-
Jeremy Lin authored
This section of code seems to be breaking the Docker release workflow as of a few days ago, though it's unclear why. This tag only existed to work around an issue with Docker pulling the wrong image for ARMv6 platforms; that issue was resolved in Docker 20.10.0, which has been out for a few years now, so it seems like a reasonable time to drop this tag.
-
Daniel García authored
-
Daniel García authored
-
BlackDex authored
We also need to validate the note sizes on key-rotation. If we do not validate them before we store them, that could lead to a partial or total loss of the password vault. Validating these restrictions before actually processing them to store/replace the existing ciphers should prevent this. There was also a small bug when using web-sockets. The client which is triggering the password/key-rotation change should not be forced to logout via a web-socket request. That is something the client will handle it self. Refactored the logout notification to either send the device uuid or not on specific actions. Fixes #3152
-
sirux88 authored
-
BlackDex authored
- Change default Password Hash KDF Storage from 100_000 to 600_000 iterations - Update Password Hash when the default iteration value is different - Validate password_iterations - Validate client-side KDF to prevent it from being set lower than 100_000
-
Daniel García authored
-
sirux88 authored
-
Daniel García authored
-
BlackDex authored
We also need to validate the note sizes on key-rotation. If we do not validate them before we store them, that could lead to a partial or total loss of the password vault. Validating these restrictions before actually processing them to store/replace the existing ciphers should prevent this. There was also a small bug when using web-sockets. The client which is triggering the password/key-rotation change should not be forced to logout via a web-socket request. That is something the client will handle it self. Refactored the logout notification to either send the device uuid or not on specific actions. Fixes #3152
-
- Jan 14, 2023
-
-
sirux88 authored
Merge branch 'refactoring-user-setpassword' of https://github.com/sirux88/vaultwarden into refactoring-user-setpassword
-
sirux88 authored
-
- Jan 13, 2023
-
-
sirux88 authored
-
- Jan 12, 2023
-
-
Daniel García authored
-
Daniel García authored
-
BlackDex authored
The new web-vault v2023.1.0 supports a custom color for the avatar. https://github.com/bitwarden/server/pull/2330 This PR adds this feature.
-
BlackDex authored
This PR sets Rust to v1.66.1 to fix a CVE. https://blog.rust-lang.org/2023/01/10/cve-2022-46176.html https://blog.rust-lang.org/2023/01/10/Rust-1.66.1.html Also updated some packages while at it.
-
BlackDex authored
The Organization member overview supports showing an icon if the user has MFA enabled or not. This PR adds this feature. This is very useful if you want to enable force mfa for example.
-
GeekCorner authored
-
BlackDex authored
-
Rychart Redwerkz authored
-
Daniel García authored
-
BlackDex authored
This PR sets Rust to v1.66.1 to fix a CVE. https://blog.rust-lang.org/2023/01/10/cve-2022-46176.html https://blog.rust-lang.org/2023/01/10/Rust-1.66.1.html Also updated some packages while at it.
-
BlackDex authored
The Organization member overview supports showing an icon if the user has MFA enabled or not. This PR adds this feature. This is very useful if you want to enable force mfa for example.
-
GeekCorner authored
-
BlackDex authored
-
Rychart Redwerkz authored
-
Daniel García authored
-
BlackDex authored
The Organization member overview supports showing an icon if the user has MFA enabled or not. This PR adds this feature. This is very useful if you want to enable force mfa for example.
-
GeekCorner authored
-
BlackDex authored
-
Rychart Redwerkz authored
-
Daniel García authored
-
GeekCorner authored
-
BlackDex authored
-
Rychart Redwerkz authored
-