@123 @kanadaj @Ulysses @rengle @el613 @vnat I moved your posts (from “Request password reprompt for notes”) into this feature request to the same topic now.
@Micah_Edelblut “Next chapter” to our short discussion 3-4 weeks ago here (see also the few posts above yours): I just found out, if you open a “master password re-prompt” protected login item via the inline autofill menu, then also with browser extension 2025.6.0 one still sees the login item in the background (including some details like notes or TOTP code), like @CodingCatAero showed in the screenshot in this post. – Could you please forward that to the team. (or give me the signal to open a GitHub issue…
)
Thanks for the ping! I have replicated the vulnerability and added a bug to the team backlog.
Update: a fix is up! [PM-23157] Autofill - Master Reprompt by nick-livefront · Pull Request #15431 · bitwarden/clients · GitHub
2 Likes