Join Discord
Powered by
Also, I did not test this, but if that email sendi...
# security-discussion
l
longshotlabs
06/10/2021, 8:07 PM
Also, I did not test this, but if that email sending API endpoint isn't secured, it seems like it would be very easy to spoof a password reset email and make it appear to come from any site using supertokens
2
Views
Previous
Next