ecency / esteem

eSteem Mobile - Application for Android and iOS users, start earning cryptocurrency!
https://esteem.app
MIT License
85 stars 58 forks source link

Security issu. code automatically remove after 3 times incorrect #245

Open rockstar96969696 opened 6 years ago

rockstar96969696 commented 6 years ago

Today use of eSteem Mobile app for Android, I found a bug where you do not get to see the pin code page if you type the incorrect code for 3 times. I feel finding these bugs help me do my bit to support the endeavors of @good-karma and this app used by 1000s of users. This app very good and provide more functionality and accessibility to user.

Expected behavior

The app should show the timer if the code is typed 3 times incorrect. So the actual user can easily unlock it after the set time.

Actual behavior

When we type a set code incorrectly 3 tumes then the app is automatically unlocked. There a major problem that the app automatically unlocked and the set code is reset automatically. What happened if some wrong guy set its own password. It just make the app functionality poor and poor. Fixing it will be provide more stability.

How to reproduce



Posted on Utopian.io - Rewarding Open Source Contributors