mirror of
https://github.com/dani-garcia/vaultwarden.git
synced 2026-05-17 17:43:07 +03:00
f62a7a66c8
When a security-stamp gets reset/rotated we should also rotate all device refresh-tokens to invalidate them. Else clients are still able to use old refresh tokens. Signed-off-by: BlackDex <black.dex@gmail.com>