Change-password dialog doesn't validate password length #28

Closed
opened 2021-02-09 20:40:19 +00:00 by raucao · 1 comment
Owner

When creating a new account, the password length is validated correctly. But (locally at least) I was just able to update my password for an existing account with a shorter one.

When creating a new account, the password length is validated correctly. But (locally at least) I was just able to update my password for an existing account with a shorter one.
raucao added the
bug
security
labels 2021-02-09 20:40:19 +00:00
Author
Owner

Update: It actually doesn't even validate the password confirmation param containing the same value as the password one.

Update: It actually doesn't even validate the password confirmation param containing the same value as the password one.
raucao referenced this issue from a commit 2023-02-19 06:42:55 +00:00
Sign in to join this conversation.
No description provided.