[wp-trac] [WordPress Trac] #47352: Take into account the current admin email address when rate limiting the recovery mode email

WordPress Trac noreply at wordpress.org
Thu Jun 20 14:16:03 UTC 2019


#47352: Take into account the current admin email address when rate limiting the
recovery mode email
-------------------------------------+------------------------------
 Reporter:  johnbillion              |       Owner:  (none)
     Type:  defect (bug)             |      Status:  new
 Priority:  normal                   |   Milestone:  Awaiting Review
Component:  Administration           |     Version:  5.2
 Severity:  normal                   |  Resolution:
 Keywords:  servehappy dev-feedback  |     Focuses:
-------------------------------------+------------------------------

Comment (by foack):

 Just wrote a quick fix for this, introducing an option field that stores a
 hashed version of the email address that received the last recovery email.
 The rate limit is then ignored if that hash and the hash of the current
 admin email do not match.

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/47352#comment:2>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list