keepassxc-browser icon indicating copy to clipboard operation
keepassxc-browser copied to clipboard

Confuses various input fields with OTP fields

Open Chealer opened this issue 7 months ago • 4 comments

Expected Behavior

KeePassXC should not readily offer to enter one-time passwords in form fields which are not designed to enter passwords (let alone OTPs).

Current Behavior

In several cases, KeePassXC offers a broken button with an OTP icon to enter a one-time password in a form field which is not designed to enter passwords. I suspect the scope of this problem has no limits, but a specific case affecting Desjardins's website is tracked in ticket #2243 . I just stumbled on the same on Building Stack too. As the following screenshot shows, 2 fields in the same form are affected: image

The first confusion comes from a field meant to contain an insurance company, while the second represents an amount of money.

Trying to activate the broken buttons just displays a warning indicating that no TOTP could be found ("Warning! Aucun TOTP n'a été trouvé."). Visibly, the display of at least one of the buttons is also broken.

This happens even if Building Stack does not supports OTPs.

Steps to Reproduce (for bugs)

This depends on the affected form. Regarding the Building Stack case just mentioned, just click the button to upload insurance documents from the email warning that an insurance proof is missing. Regarding desjardins.com, see the ticket specifically tracking that case.

Debug info

KeePassXC - 2.7.9 KeePassXC-Browser - 1.9.1.1 Operating system: Windows 11 Browser: Firefox

Chealer avatar Jul 15 '24 00:07 Chealer