2FA login recovery code broke 1.26.0

In response to a GitHub discussion Here I went to test this out in my production instances running 1.26.0. It appears when choosing recovery code, it redirects to Bitwarden’s help page (Here) for recovery code and not an actual page where you can enter in a recovery code. That can’t be right…right?

*Adding some additional information I have DUO set up so this pops up first. I then choose to use another 2fa method, when choosing recovery code there is when it redirects to bitwarden’s help page. This is in iOS iPhone chrome browser and iOS safari.

The same happens when disabling duo 2fa.

This is how it works. This is the flow as intended by Bitwarden.
The same happens on there self-hosted and cloud environment

1 Like

Interesting, so if the only 2fa you have is the Authenticator, and you loose the ability to access that Authenticator, the way to access the vault is to enter the recovery code where?

If you read the linked help page and follow the correct link you’ll end up here:

Which states:

To use your recovery code, navigate to https://vault.bitwarden.com/#/recover-2fa/ (or, if you are self-hosting, https://your.domain.com/#/recover-2fa/).

1 Like