Skip to content

Teampass

v3.2.0.5 Breaking

This release includes 1 breaking change for platform teams planning a safe upgrade.

Published 27d Secrets & Credentials
βœ“ No known CVEs patched
Read the diff β†’ Tool health β†’ What is this tool? β†’

✓ No known CVEs patched in this version

Topics

php

Affected surfaces

auth

Summary

AI summary

Updates Important, πŸ› Bug fixes, and Full Changelog across a mixed release.

Full changelog

What's Changed

This maintenance release fixes the multi-factor authentication enrollment introduced in 3.2.0.4.

πŸ› Bug fixes

  • Fix MFA QR code generation and harden 2FA enrollment (#5267).
    The TOTP enrollment QR code introduced in 3.2.0.4 relied on an external image service that is no longer available, leaving the QR blank. It is now rendered locally in the browser (vendored qrcodejs), so enrollment works fully offline. The "113 not allowed" authorization gate is nowenrollment-aware, so users without a secret yet can complete TOTP setup.

Full Changelog

Full Changelog: https://github.com/nilsteampassnet/TeamPass/compare/3.2.0.4...3.2.0.5

Important

  • Requires at least PHP 8.2

Languages

Please join Teampass v3 translation project on Poeditor and translate it for your language.

Installation

Follow instructions from Documentation.

Upgrade

Follow instructions from Documentation.

Ideas and comments

Are welcome ... please use Discussions.

Breaking Changes

  • Requires at least PHP 8.2

Weekly OSS security release digest.

The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.

No spam, unsubscribe anytime.

Share this release

Track Teampass

Get notified when new releases ship.

Sign up free

About Teampass

Password manager dedicated for managing passwords in a collaborative way. One symmetric key is used to encrypt all shared/team passwords and stored server side in a file and the database. works on any server Apache, MySQL and PHP.

All releases β†’

Related context

Earlier breaking changes

  • v3.2.0.8 Enforces folder‑level rights on bulk delete, move, and items_delete operations (#5275).

Beta — feedback welcome: [email protected]