Security fixes
This release contains security fixes for the following advisories. We strongly advice to update as soon as possible.
SSO Login CSRF - [GHSA-pfp2-jhgq-6hg5,](https://github.com/dani-garcia/vaultwarden/security/advisories/GHSA-pfp2-jhgq-6hg5) [GHSA-w6h6-8r66-hcv7](https://github.com/dani-garcia/vaultwarden/security/advisories/GHSA-w6h6-8r66-hcv7)
User/Organization Enumeration - [GHSA-hxqh-ff5p-wfr3](https://github.com/dani-garcia/vaultwarden/security/adviso
r/selfhosted
So i originally came into self hosting to get away from subscriptions, to stop renting everything/ start owning things, to not rely on external sources, etc... but now that im on reddit and looking to be a bit more active im seeing A LOT of posts on VPSs.
I had no idea what they were so i decided to look it up, and to my surprise, its renting your own self hosted work(?) It still feels wrong and i mightve been lead astray by the internet, but isnt that like everything that self hosting is meant
r/selfhosted
As the title says, i noticed that my website stopped working on Oracle cloud free tier. After discussing with Chatgpt and claude, they found extra php files present in directories like media, content etc. They could not understand the malicious payload just like that and refused to run it in their sandbox env. With all that info, I guess my ubuntu server is also compromised. However, I have ssh access. But my RDP just does not show anything. I am thinking of restoring the server and website. I d
r/selfhosted