Passwords are stored in the USER table of the database in plain text.
They should be hashed instead.
According to Bill, several fixes need to go with this, e.g., fixing the email notification, and a script that converts existing accounts.
Log in to post a comment.
According to Bill, several fixes need to go with this, e.g., fixing the email notification, and a script that converts existing accounts.