![]() |
Security Problem |
Post Reply ![]() |
Author | |
utopiac ![]() Newbie ![]() Joined: 03-February-2015 Location: United Kingdom Status: Offline Points: 5 |
![]() ![]() ![]() ![]() ![]() Posted: 16-March-2015 at 4:57pm |
Hi everyone,
It has just came to my attention that when a user requests a password reminder form Product Cart the password is sent to the customer via email unhashed. Does anyone know of a way to change this? Thanks in advance, Craig
|
|
![]() |
|
ProductCart ![]() Admin Group ![]() ProductCart Team Joined: 01-October-2003 Status: Offline Points: 135 |
![]() ![]() ![]() ![]() ![]() |
Hi Craig,
The Reset/Forgot Password methodology is being rewritten in ProductCart v5.2 (ETA Q3) to use a "one-way" approach that will send a message to the account-holder's e-mail address which contains a link and instructions for changing or resetting their password. |
|
![]() |
Post Reply ![]() |
|
Tweet
|
Forum Jump | Forum Permissions ![]() You cannot post new topics in this forum You cannot reply to topics in this forum You cannot delete your posts in this forum You cannot edit your posts in this forum You cannot create polls in this forum You cannot vote in polls in this forum |