From f121201aae8bb16f91e117fda212914cef15e7cb Mon Sep 17 00:00:00 2001 From: Johan Lundberg <lundberg@sunet.se> Date: Wed, 22 Jan 2025 14:02:16 +0100 Subject: [PATCH] clear reset password session namespace when completed --- src/eduid/webapp/reset_password/helpers.py | 1 + 1 file changed, 1 insertion(+) diff --git a/src/eduid/webapp/reset_password/helpers.py b/src/eduid/webapp/reset_password/helpers.py index e192bfb86..2d6798c51 100644 --- a/src/eduid/webapp/reset_password/helpers.py +++ b/src/eduid/webapp/reset_password/helpers.py @@ -344,6 +344,7 @@ def reset_user_password( current_app.logger.info(f"Password reset done, removing state for {user}") current_app.password_reset_state_db.remove_state(state) + session.reset_password.clear() return success_response(message=ResetPwMsg.pw_reset_success)