Session tokens should be randomly generated #2

Closed
opened 2023-11-09 12:04:05 +01:00 by Wroclaw · 0 comments
Owner

currently they are generated like IDs, and IDs are generated based on timestamp. this should not be like that. This could be easily bruteforced.

currently they are generated like IDs, and IDs are generated based on timestamp. this should not be like that. This could be easily bruteforced.
Wroclaw added the
bug
side
backend
labels 2023-11-09 12:05:29 +01:00
Sign in to join this conversation.
No milestone
No project
No assignees
1 participant
Notifications
Due date
The due date is invalid or out of range. Please use the format "yyyy-mm-dd".

No due date set.

Dependencies

No dependencies set.

Reference: Wroclaw/WorkshopTasker#2
No description provided.