diff --git a/changelog.d/admin-self-revocation.security b/changelog.d/admin-self-revocation.security new file mode 100644 index 000000000..a311ca1ed --- /dev/null +++ b/changelog.d/admin-self-revocation.security @@ -0,0 +1 @@ +Admin API: Fixed self-revocation vulnerability where admins could accidentally revoke their own admin status via the single-user permission endpoint \ No newline at end of file