Unknown · Devise-Two-Factor · CVE-2021-43177
**Name of the Vulnerable Software and Affected Versions**
devise-two-factor versions prior to 4.0.2
**Description**
The issue allows reusing a One-Time-Password (OTP) for one immediately trailing interval due to an incomplete fix.
**Recommendations**
For versions prior to 4.0.2, update to version 4.0.2 or later to resolve the issue.