Actions
Patch #44074
closedignored and unnecessary scope in twofa token lookup
Status:
Closed
Priority:
Normal
Assignee:
Category:
Code cleanup/refactoring
Target version:
Description
When deleting the used twofa backup code there is this line:
Token.where(user_id: @user.id).find_token('twofa_backup_code', code).try(:delete)
Token.find_token however doesn't honor the prepended relation, and also we do check the user
in the next line so the patch simply removes the where(...) part.
Files
Related issues
Updated by Marius BĂLTEANU 3 months ago
- Status changed from New to Closed
- Assignee set to Marius BĂLTEANU
- Target version changed from Candidate for next major release to 7.0.0
Committed, thanks!
Updated by Go MAEDA 8 days ago
- Related to Patch #44368: Revert removal of user scope in 2FA backup code lookup added
Actions