Open Closed

Force Password Change Issue #7163


User avatar
0
gilina.mcbride created
  • ABP Framework version: v8.1.1 tested - using 7.3.0 for application
  • UI Type: MVC
  • Database System: EF Core (SQL Server)
  • Tiered (for MVC) or Auth Server Separated (for Angular): yes
  • Issue:
    • If a user is marked to force password change on the next log in when they log in even if the wrong password is entered it still takes them to the password change page rather than saying their username or password is incorrect first.
  • Steps to reproduce the issue:
    • Mark user as force password change and then log out. Log in as that user with the incorrect password and you will still be taken to the change password page. This is happening in our application and a new abp app I created from scratch with the latest version to test. See gif attached logging in with an incorrect password.

4 Answer(s)
  • User Avatar
    0
    liangshiwei created
    Support Team Fullstack Developer

    I will check it.

  • User Avatar
    0
    liangshiwei created
    Support Team Fullstack Developer

    We will fix it in the next patch version: https://github.com/abpframework/abp/issues/19753

  • User Avatar
    0
    gilina.mcbride created

    Thank you!

  • User Avatar
    0
    liangshiwei created
    Support Team Fullstack Developer

    : )

Made with ❤️ on ABP v9.1.0-preview. Updated on December 12, 2024, 07:15