Skip to content

Security: Force-stop user's sessions when changing password#2099

Merged
rogersteblerbsi merged 1 commit intoreleases/25.2from
features/rsb/25.2/299509_passwortChangeLogout
Mar 23, 2026
Merged

Security: Force-stop user's sessions when changing password#2099
rogersteblerbsi merged 1 commit intoreleases/25.2from
features/rsb/25.2/299509_passwortChangeLogout

Conversation

@rogersteblerbsi
Copy link
Copy Markdown
Member

Force-stop other active sessions when a user updates their password to prevent potential hijacked sessions from persisting.

The current session gets terminated as well, but it allows the user to save unsaved work before logout.

299509

Force-stop other active sessions when a user updates their password
to prevent potential hijacked sessions from persisting.

The current session gets terminated as well, but it allows the user to
save unsaved work before logout.

299509
@rogersteblerbsi rogersteblerbsi self-assigned this Mar 17, 2026
@rogersteblerbsi rogersteblerbsi merged commit 7a66114 into releases/25.2 Mar 23, 2026
4 checks passed
@rogersteblerbsi rogersteblerbsi deleted the features/rsb/25.2/299509_passwortChangeLogout branch March 23, 2026 07:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants