Running 2 accounts with a single email
W
WakaTime
Submitted None
Actions:
Reported by
atruba
Vulnerability Details
Technical details and impact analysis
Hi,
While testing, I found a logic flaw which made me to make two accounts with a single email
Reproduction Steps
1-Create one account with [email protected]
2-another with [email protected] or [email protected] etc
3-Emails of both accounts will come at [email protected]
fix:
Dont allow "+" in emails.
Thanks,
Report Details
Additional information and metadata
State
Closed
Substate
Informative
Submitted
Weakness
Business Logic Errors