Jump to content

Recommended Posts

Posted

When ever a client uses the password reset function. and requests multiple password resets. and does not use the Link it sends via email. every link continues to work. the old ones should be set as expired. 

 

I guess this could also be a Security Risk.

Guest
This topic is now closed to further replies.
×
×
  • Create New...