Teleport 2.3.7
Description
Teleport 2.3.7 fixes a security vulnerability that allowed an attacker with direct network access to the Auth Server to write a client for the Auth Server that could by-pass second factor authentication.
We strongly encourage anyone running Teleport 2.3 to upgrade their Auth Server to 2.3.7 to mitigate this issue.
Bug Fixes
- Don't allow second factor by-pass. #1550