You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
Describe the security problem
At the moment, the recovery password module generates a pseudo-random hash that is vulnerable. The code uses the timestamp and the user e-mail (filled by user to recover password), public information, to generate hashs to recovery password. Futhermore, the code uses MD5 hash that has a lot of vulnerabilities known today.
Describe the security problem
At the moment, the recovery password module generates a pseudo-random hash that is vulnerable. The code uses the timestamp and the user e-mail (filled by user to recover password), public information, to generate hashs to recovery password. Futhermore, the code uses MD5 hash that has a lot of vulnerabilities known today.
Related Code
The text was updated successfully, but these errors were encountered: