diff options
author | Matthew Somerville <matthew-github@dracos.co.uk> | 2018-09-06 17:42:54 +0100 |
---|---|---|
committer | Matthew Somerville <matthew-github@dracos.co.uk> | 2018-09-06 17:42:54 +0100 |
commit | aaa0887eca2c030ba56376888934ee1e29b26932 (patch) | |
tree | e611e4ec6afed9c27f9df3abe371c22e7d66da07 /CHANGELOG.md | |
parent | 80cf37ef3f52d5b466c13c7bddfddd62f6d4f8fc (diff) |
Update user object before attempting sign-in.v2.3.5
This prevents leaking of user account phone
number on a failed login attempt.
Diffstat (limited to 'CHANGELOG.md')
-rw-r--r-- | CHANGELOG.md | 5 |
1 files changed, 4 insertions, 1 deletions
diff --git a/CHANGELOG.md b/CHANGELOG.md index b1b052008..f9b0f9149 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,6 +1,9 @@ ## Releases -* Unreleased +* v2.3.5 (6th September 2018) + - Security: + - Update user object before attempting sign-in, + to prevent leak of user account phone number. * v2.3.4 (7th June 2018) - Bugfixes: |