[wp-trac] [WordPress Trac] #21737: Users should have to jump through hoops to set passwords of their choosing, and we should guard better against weak passwords

WordPress Trac noreply at wordpress.org
Thu Aug 29 08:40:52 UTC 2013


#21737: Users should have to jump through hoops to set passwords of their choosing,
and we should guard better against weak passwords
----------------------------+-----------------------
 Reporter:  markjaquith     |       Owner:  westi
     Type:  task (blessed)  |      Status:  accepted
 Priority:  normal          |   Milestone:  3.7
Component:  Security        |     Version:
 Severity:  normal          |  Resolution:
 Keywords:                  |
----------------------------+-----------------------

Comment (by duck_):

 In [changeset:"25159"]:
 {{{
 #!CommitTicketReference repository="" revision="25159"
 zxcvbn: Apply ROT13 when building the dynamic user_inputs dictionary.

 The modified matcher assumes that the dictionaries are ROT13 encoded.
 All of the static dictionaries were, but user_inputs wasn't. See #21737.
 }}}

--
Ticket URL: <http://core.trac.wordpress.org/ticket/21737#comment:44>
WordPress Trac <http://core.trac.wordpress.org/>
WordPress blogging software


More information about the wp-trac mailing list