prevents me from logging into Vanguard


For the longest time, I could not login to my Vanguard account via internet.

I reset the password perhaps 3 occasions throughout the previous 12 months, and it nonetheless did not work. I did not have time to consider it extra, so I assumed there was a glitch. I’d simply login by scanning the QR code with the Vanguard app on my telephone.

Eventually, I’ve determined to spend a while determining, and maxlength="20" is the basis trigger. Let me clarify.

Vanguard has the reset password type the place units its maxlength to be 20.

I’m utilizing 1password with a heightened sense of safety. Of course, my generated password is longer than 20 characters. I might copy the password and paste it within the password enter discipline.

For simplicity, to illustrate my password is abcdefghijklmnopqrstuvwxyz (26 characters) Since the maxlength is 20, Chrome inputs solely abcdefghijklmnopqrstu (20 characters) as proven under:

I’d paste the password twice. Once within the password discipline, and one other within the affirm password discipline. Then, I’d would click on submit.

All good. The password reset was a hit!

Then, I’d go to the login web page and attempt to login utilizing the identical password.

As it seems, the password discipline on the login web page would not set maxlength to 20. Therefore, the pasted password is the complete abcdefghijklmnopqrstuvwxyz (26 characters) as proven under:

Vanguard would complain that my password was incorrect. And I might be so confused as a result of I simply reset the password.

This is one instance why we should not use the maxlength attribute on the password discipline. Validating the size utilizing JS or on the backend appears superior because it processes the precise textual content that the person sends… not the unintentionally trimmed textual content.



Source link