Prevent session fixation

This commit is contained in:
slawkens 2023-11-27 23:16:51 +01:00
parent 55dbade8d5
commit 483155cf4c

View File

@ -94,6 +94,7 @@ else
&& (!isset($t) || $t['attempts'] < 5)
)
{
session_regenerate_id();
setSession('account', $account_logged->getId());
setSession('password', encrypt(($config_salt_enabled ? $account_logged->getCustomField('salt') : '') . $login_password));
if($remember_me) {