ecamp / ecamp/ecamp3

Switch to secure and maintained hashing in UserDataPersister for the activation key

Open
#2,382 3 comments 0 reactions 0 assignees View on GitHub
agents:ignore
Dominant language
PHP
Stars
156
Forks
72
Avg merge
12h 43m
Merged PRs (30d)
203

Description

Ist md5 wirklich noch ein sinnvoller Hash-Algorithmus für so etwas? Wie wärs wenn wir etwas wie https://github.com/symfony/password-hasher brauchen was auch rückwärtskompatibel auf dem aktuellen Stand der Technik gehalten wird?

_Originally posted by @carlobeltrame in https://github.com/ecamp/ecamp3/pull/2377#discussion_r781344229_

And when we are at it, we can use the same mechanism with the then secure hash to only store hashes for the invitekey of campcollaborations.

Contributor guide

Open the contributing guide

Assessment

This issue has not been assessed yet.

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.