Written by 妖怪December 26, 2019 Interesting issue where the password reset flow can allow account take-over if you register an account with a similar email domain with a unicode case collision. More interesting, it impacts Django. https://t.co/kZjksKBipF https://t.co/ukzYXX58Rv Share this: Share on X (Opens in new window) X Share on Facebook (Opens in new window) Facebook Like this:Like Loading...