With PIN unlock activated password autofills even with locked vault on Chrome


#1

As per the title, when I activate the PIN unlock, set the PIN and subsequently lock the vault; I can go to a webpage where a login exist in the vault and press the shortcut keys Ctrl+Shift+L and the user/password is autofilled. Again, all this while the vault is supposedly Locked.

This behaviour does not happen when PIN unlock is unticked and vault is locked

This might be a related issue to the one posted in here: (1) and here (2). So it seems that while the PIN unlock is selected, the vault is not really locked.

Edit: using version 1.39.1 of the Chrome plugin


#2

Hey there,

I can reproduce here too, the feature needs more work, it would be good idea to open issue here https://github.com/bitwarden/browser/issues for the developers to have a look at it!


#3

Good idea, I have just done it.


#4

It is resolved in 1.39.2


closed #5