Make the token really random
This commit is contained in:
parent
60e3b563e2
commit
85f9869f69
1 changed files with 1 additions and 1 deletions
|
@ -12,7 +12,7 @@ require_once('../../lib/base.php');
|
|||
// Someone lost their password:
|
||||
if (isset($_POST['user'])) {
|
||||
if (OC_User::userExists($_POST['user'])) {
|
||||
$token = sha1($_POST['user'].uniqId());
|
||||
$token = sha1($_POST['user'].md5(uniqid(rand(), true)));
|
||||
OC_Preferences::setValue($_POST['user'], 'owncloud', 'lostpassword', $token);
|
||||
$email = OC_Preferences::getValue($_POST['user'], 'settings', 'email', '');
|
||||
if (!empty($email)) {
|
||||
|
|
Loading…
Reference in a new issue