Skip to content

DG26-9: Activity log does not log misuse of recovery code#2851

Merged
jakub-tldr merged 11 commits into
release/2.0from
log-recovery-codes
May 4, 2026
Merged

DG26-9: Activity log does not log misuse of recovery code#2851
jakub-tldr merged 11 commits into
release/2.0from
log-recovery-codes

Conversation

@jakub-tldr
Copy link
Copy Markdown
Contributor

This issue is for vulnerability found by our security team during cyclical penetration testing of our solution.
Once the entire process is completed, a detailed report will be published, providing all interested parties with detailed information about the tests conducted and the issues that were reported on the soon to be published dedicated web page:

https://defguard.net/pentesting/

Please follow any issue you are interested, when the issue will be closed there will be linked pull request fixing the issue.

wojcik91
wojcik91 previously approved these changes May 4, 2026
@jakub-tldr jakub-tldr merged commit 8b09003 into release/2.0 May 4, 2026
14 checks passed
@jakub-tldr jakub-tldr deleted the log-recovery-codes branch May 4, 2026 10:43
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants