BOOK THIS SPACE FOR AD
ARTICLE ADHi,
Today, I would like to share my first critical bug. Let’s gooooooo!
First, when I go into any program, I create an account and test the “Forgot Password” function. However, when I tested it, I noticed that in the response, when I reviewed it, the recovery forgot password was reflected in the response.
This is a screenshot from my email
At first, I was really shocked.
Why?
Because how could someone make this mistake, which leads to anyone being able to take over the account?
In the end, I was very successful with this bug, even though it was easy. There was no duplicate.
This is a short write-up. Thanks for reading! :)