Issue #6059 duplicate
Caslav Sabani
created an issue

Please do not allow for a user to change a password without entering his old password first. I just changed my password on bitbucket account without first entering my old password.

THAT IS BIG SECURITY HOLE!

DO NOT ALLOW THIS!!!