Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Restore password] after user used the 'Restore password' link and change password token/link still work #1776

Closed
krivondulia opened this issue Oct 31, 2020 · 3 comments · Fixed by #1792

Comments

@krivondulia
Copy link

Environment: Windows 10 Home, Mozilla Firefox 82.0
Reproducible: always
Build found: commit 8b208c6

Preconditions
User should be registered in the system by email.

  1. Go to https://ita-social-projects.github.io/GreenCityClient/#/welcome
  2. Click on 'Sign in'
  3. Click on 'Forgot password' link
  4. Fill the textbox with valid data
  5. Click on 'Submit a login link'

Steps to reproduce

  1. check your mailbox and click on 'Restore' button.
  2. Change your password.
  3. Click on the 'Restore password' link.

Actual result
This link with 'Restore password' token still works.

Expected result
This link with 'Restore password' token doesn't available.

User story and test case links
User story #136

@forestik forestik self-assigned this Nov 2, 2020
@forestik forestik added this to the UI S3.3 milestone Nov 4, 2020
@forestik forestik linked a pull request Nov 4, 2020 that will close this issue
@olenapetryshak olenapetryshak reopened this Nov 5, 2020
@marinasmarsa
Copy link

Bug has not been fixed - The link with 'Restore password' token still works.

@forestik
Copy link
Contributor

The link with "Recover Password" still works, but the password doesn't change after 24 hours.

@SashkoMolodec SashkoMolodec removed this from the UI S3.3 milestone Dec 15, 2020
@forestik forestik self-assigned this Dec 23, 2020
@YevhenNaN YevhenNaN assigned KhrystynaPr and unassigned YevhenNaN Sep 6, 2021
@Bohdan-Melnyk Bohdan-Melnyk self-assigned this Sep 24, 2021
@IgorBoykov IgorBoykov added UI and removed back-end This is label if this task is back-end labels Sep 30, 2021
@IgorBoykov
Copy link
Contributor

After receiving error from back, user should get message "your token is invalid"
https://i.imgur.com/f6sBlAt.png

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment