Hacker News new | ask | show | jobs
by phendrenad2 1087 days ago
This has nothing to do with bitwarden. This is a generic directory traversal attack (enabled by Nginx's configuration language being full of serious gotchas).
1 comments

It does have to do with BitWarden: they wrote and shipped the buggy config.
It looks like they did say it was still beta and warned there could be issues though. I'll give them credit for that much.
Public relations future-proofing:

"Everything is in beta!"