Skip to content

Next

  • Projects
  • Groups
  • Snippets
  • Help
    • Loading...
    • Help
    • Submit feedback
    • Contribute to GitLab
    • Switch to GitLab Next
  • Sign in / Register
Minds Frontend
Minds Frontend
  • Project
    • Project
    • Details
    • Activity
    • Releases
    • Dependency List
    • Cycle Analytics
    • Insights
  • Repository
    • Repository
    • Files
    • Commits
    • Branches
    • Tags
    • Contributors
    • Graph
    • Compare
    • Charts
    • Locked Files
  • Issues 828
    • Issues 828
    • List
    • Boards
    • Labels
    • Service Desk
    • Milestones
  • Merge Requests 70
    • Merge Requests 70
  • CI / CD
    • CI / CD
    • Pipelines
    • Jobs
    • Schedules
    • Charts
  • Registry
    • Registry
  • Packages
    • Packages
  • Wiki
    • Wiki
  • Snippets
    • Snippets
  • Members
    • Members
  • Collapse sidebar
  • Activity
  • Graph
  • Charts
  • Create a new issue
  • Jobs
  • Commits
  • Issue Boards
  • Minds
  • Minds FrontendMinds Frontend
  • Issues
  • #1442

Closed
Open
Opened 1 week ago by Ben Hayward@benhayward.ben
  • Report abuse
  • New issue
Report abuse New issue

(bug): Limited password validation on forgot password

Summary

When you forget your password, the password strength enforcement is different. Characters like @ are not allowed, but all lower case with no numbers and symbols is.

Steps to reproduce

  1. Log out
  2. Click on forgot my password on login form
  3. follow instructions
  4. try an all lower case password with an @
  5. try removing the @

Platform information

Very likely cross-platform but reproduced on S7 edge.

What is the current bug behavior?

Weak passwords are allowed.

What is the expected correct behavior?

Weak passwords should not be allowed.

Relevant logs and/or screenshots

(Paste any relevant logs - please use code blocks (```) to format console output, logs, and code as it's very hard to read otherwise.)

Possible fixes

(If you can, link to the line of code that might be responsible for the problem)

Please solve the reCAPTCHA

We want to be sure it is you, please confirm you are not a robot.

Edited 1 week ago by Ben Hayward

Related issues
0

    Related merge requests
    1
    • [Sprint/HipsterHedgehog](bug): Forgot password validation and refactor
      !369
    When this merge request is accepted, this issue will be closed automatically.
    • Ben Hayward @benhayward.ben added 1 - High P - Onboarding P - Platform T - Bug labels 1 week ago

      added 1 - High P - Onboarding P - Platform T - Bug labels

    • Ben Hayward @benhayward.ben changed title from (high): Limited password validation on forgot password to (bug): Limited password validation on forgot password 1 week ago

      changed title from (high): Limited password validation on forgot password to (bug): Limited password validation on forgot password

    • Ben Hayward @benhayward.ben assigned to @benhayward.ben 5 days ago

      assigned to @benhayward.ben

    • Ben Hayward @benhayward.ben changed weight to 3 5 days ago

      changed weight to 3

    • Ben Hayward @benhayward.ben changed milestone to %sprint: Hipster Hedgehog 5 days ago

      changed milestone to %sprint: Hipster Hedgehog

    • Ben Hayward @benhayward.ben added S - InProgress label 4 days ago

      added S - InProgress label

    • Ben Hayward @benhayward.ben added S - Review label and removed S - InProgress label 4 days ago

      added S - Review label and removed S - InProgress label

    • Ben Hayward @benhayward.ben changed weight to 5 4 days ago

      changed weight to 5

    • Ben Hayward @benhayward.ben changed milestone to %sprint: Hipster Hedgehog 4 days ago

      changed milestone to %sprint: Hipster Hedgehog

    • Ben Hayward @benhayward.ben changed weight to 5 4 days ago

      changed weight to 5

    • Ben Hayward @benhayward.ben moved from engine#513 (closed) 4 days ago

      moved from engine#513 (closed)

    • Ben Hayward @benhayward.ben mentioned in merge request !369 4 days ago

      mentioned in merge request !369

    • Mark Harding @markeharding removed S - Review label 8 minutes ago

      removed S - Review label

    • Mark Harding
      Mark Harding @markeharding · 7 minutes ago
      Owner

      This is for the backend to restrict, not the frontend

    • You're only seeing other activity in the feed. To add a comment, switch to one of the following options.
    Please register or sign in to reply
    Assignee
    Ben Hayward's avatar Ben Hayward @benhayward.ben
    Assign to
    None
    Epic
    None
    sprint: Hipster Hedgehog
    Milestone
    sprint: Hipster Hedgehog
    Assign milestone
    None
    Time tracking
    No estimate or time spent
    None
    Due date
    None
    4
    Labels
    1 - High P - Onboarding P - Platform T - Bug
    Assign labels
    • View project labels
    5
    Weight
    5
    Confidentiality
    Not confidential
    Lock issue
    Unlocked
    2
    2 participants
    user avatar
    Ben Hayward
    user avatar
    Mark Harding
    Reference: minds/front#1442