Week Passwords generated by password reset function
https://hackerone.com/reports/765031
null
tp9222
null
(Possible) staff account takeover via reset token bruteforce at helpdesk.bistudio.com
https://hackerone.com/reports/332632
null
europa
$200
Reset password without knowing current password
https://hackerone.com/reports/806055
null
naategh
null
Forgot password link doesn't expire after used, only after some hours
https://hackerone.com/reports/244642
null
mohammad_obaid
null
Password Reset Token Not Expired
https://hackerone.com/reports/283550
null
geekninja
null
Failure to check password history
https://hackerone.com/reports/255034
null
c0d3fire
null
Rate Limit too lenient for endpoint sending emails
https://hackerone.com/reports/658089
0
harshita174
null