mirror of
https://github.com/dani-garcia/vaultwarden.git
synced 2026-04-25 17:25:57 +03:00
[GH-ISSUE #1489] Bitwarden Send access limitation allows too many access attempts. #980
Labels
No labels
SSO
Third party
better for forum
bug
bug
documentation
duplicate
enhancement
future Vault
future Vault
future Vault
good first issue
help wanted
low priority
notes
pull-request
question
troubleshooting
wontfix
No milestone
No project
No assignees
1 participant
Notifications
Due date
No due date set.
Dependencies
No dependencies set.
Reference
starred/vaultwarden#980
Loading…
Add table
Add a link
Reference in a new issue
No description provided.
Delete branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
Originally created by @drownthewitch on GitHub (Mar 15, 2021).
Original GitHub issue: https://github.com/dani-garcia/vaultwarden/issues/1489
Subject of the issue
The current testing version of the Bitwarden_rs server seems to allow N+1 access attempts to a shared Bitwarden Send resource, when N are configured.
For example, when 1 allowed access attempt is configured, 2 visits are allowed before the published Send resource is disabled, when 2 are configured, 3 are allowed, etc.
Deployment environment
Your environment (Generated via diagnostics page)
Config (Generated via diagnostics page)
Install method: Docker image
Clients used: Firefox plugin, Web vault
Reverse proxy and version:
MySQL/MariaDB or PostgreSQL version:
Other relevant details:
Steps to reproduce
Expected behaviour
Actual behaviour
Troubleshooting data
@BlackDex commented on GitHub (Mar 15, 2021):
This has been fixed already: https://github.com/dani-garcia/bitwarden_rs/pull/1487
Thanks for reporting with all the details.