📦 Devise Two Factor

by Tinfoilsecurity

🔍 What is Devise Two Factor?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-8796

MEDIUM CVSS 5.3 Sep 17, 2024

Devise-Two-Factor versions 2.2.0 through 5.x generate TOTP shared secrets with insufficient entropy (120 bits instead of required 128 bits), making two-factor authentication codes easier to brute-forc...