Security issue with login
Reported by Marnen Laibow-Koser | September 9th, 2014 @ 11:29 PM
This is the FPW issue. It's an urgent bug, so I'm not going to describe it till I've fixed it.
Comments and changes to this ticket
-
Marnen Laibow-Koser September 9th, 2014 @ 11:31 PM
- Tag changed from bug, security, urgent to bug security urgent
-
Marnen Laibow-Koser September 9th, 2014 @ 11:31 PM
- Tag changed from bug security urgent to bug, security, urgent
-
Marnen Laibow-Koser September 10th, 2014 @ 01:58 AM
- State changed from new to resolved
- Tag changed from bug, security, urgent to bug, security, urgent, v0.5.15
Fixed in v0.5.15. The problem was that resetting a forgotten password would immediately log the user in, rather than waiting for him to receive the password by e-mail and enter it.
-
Marnen Laibow-Koser September 10th, 2014 @ 01:59 AM
(from [fe2232afa16489f7eabc26541c7dd535a7ede1fa]) Make sure we kill the session before resetting password. [#92] https://github.com/marnen/quorum2/commit/fe2232afa16489f7eabc26541c...
-
Marnen Laibow-Koser September 10th, 2014 @ 01:59 AM
(from [7aa38200a202dcf8695e7540d50409ae94ac29bf]) Update version and changelog. [#92] https://github.com/marnen/quorum2/commit/7aa38200a202dcf8695e7540d5...
-
Marnen Laibow-Koser September 10th, 2014 @ 01:59 AM
(from [707bf9e062c9c1a814aa0f9b46d3096784244235]) Fix login bug a little better. [#92] https://github.com/marnen/quorum2/commit/707bf9e062c9c1a814aa0f9b46...
Please Sign in or create a free account to add a new ticket.
With your very own profile, you can contribute to projects, track your activity, watch tickets, receive and update tickets through your email and much more.
Create your profile
Help contribute to this project by taking a few moments to create your personal profile. Create your profile ยป
<p>This is the issue tracker for the Quorum calendar system. Also see our <a href="http://github.com/marnen/quorum2">Github repository</a> and our <a href="http://quorum2.sourceforge.net">project website</a>.</p>
<p>Please tag bug reports with <strong>bug</strong> and feature requests with <strong>feature</strong>. Use additional descriptive tags as necessary.</p>