-
Notifications
You must be signed in to change notification settings - Fork 15
Pull requests: profullstack/qryptchat-web
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
[MEDIUM] fix(security): prevent rate-limit bypass via X-Forwarded-For header spoofing
#79
opened Jun 6, 2026 by
katnisscalls99
Loading…
[HIGH] fix(auth): use auth_user_id instead of id when querying users table in backup-pin
#78
opened Jun 6, 2026 by
katnisscalls99
Loading…
[HIGH] fix(security): require auth on /api/auth/salt to prevent PBKDF2 salt oracle
#77
opened Jun 6, 2026 by
katnisscalls99
Loading…
[CRITICAL] fix(security): scope legacy-key cleanup to authenticated user's own keys
#76
opened Jun 6, 2026 by
katnisscalls99
Loading…
ProTip!
Add no:assignee to see everything that’s not assigned.