Bugs item #2987852, was opened at 2010-04-15 13:46
Message generated for change (Tracker Item Submitted) made by jonner
You can respond by visiting:
https://sourceforge.net/tracker/?func=detail&atid=937964&aid=2987852&group_id=191583
Please note that this message will contain a full copy of the comment thread,
including the initial issue submission, for this request,
not just the latest update.
Category: Core
Group: SVN (please specify revision!)
Status: Open
Resolution: None
Priority: 5
Private: No
Submitted By: Jonathan Rogers (jonner)
Assigned to: Nobody/Anonymous (nobody)
Summary: min_password_length ignored if current password check fails
Initial Comment:
In the user's change password form, if the current password field doesn't match the current password and the new password fields are shorter than min_password_length, the "Password is too short - requires 5 characters" message is displayed, but the password is changed anyway, so both checks are circumvented. I discovered that this is due to a bug in the way errors are counted. A patch to fix it is attached.
----------------------------------------------------------------------
You can respond by visiting:
https://sourceforge.net/tracker/?func=detail&atid=937964&aid=2987852&group_id=191583
|