GHSA-h265-g7rm-h337 (Publication in process, waiting for CVE assignment) This vulnerability would allow an authenticated attacker that is part of an organization to access items from collections to which the attacker does not belong

  • osanna@thebrainbin.org
    link
    fedilink
    arrow-up
    3
    ·
    7 hours ago

    one thing I’m not willing to self host is vault/bitwarden. My whole life is based in my password manager. I imagine Bitwarden inc has a lot better security than me, and if I lose access to it I’m stuffed.

    • nopermissions@lemmy.ml
      link
      fedilink
      English
      arrow-up
      2
      ·
      2 hours ago

      Had this exact thing happen to me. I was hosting vaultwarden on a raspberry pi and then it fell over. My client devices had caged versions of my vault, but I couldn’t make changes to it. I quickly moved over to Bitwarden and it’s been fantastic.