Public C2FO bug reports.

Team Bounty Title
C2FO - [admin.c2fo.com] Open Redirect
C2FO - All Active user sessions should be destroyed when user change his password!
C2FO - The server supports only older protocols for HTTPS connections
C2FO - c2fo.com is releasing sensitive Information about Database Configuration.
C2FO - Password reset token leakage through referrer at https://app.c2fo.com/password/reset/
C2FO - User guessing/enumeration at https://app.c2fo.com/api/password-reset
C2FO - OPTIONS Method Enabled