[wp-trac] [WordPress Trac] #21022: Use bcrypt for password hashing; updating old hashes

WordPress Trac noreply at wordpress.org
Sun Aug 2 14:03:17 UTC 2020


#21022: Use bcrypt for password hashing; updating old hashes
-------------------------------------------------+-------------------------
 Reporter:  th23                                 |       Owner:  (none)
     Type:  enhancement                          |      Status:  new
 Priority:  normal                               |   Milestone:  Future
                                                 |  Release
Component:  Security                             |     Version:  3.4
 Severity:  major                                |  Resolution:
 Keywords:  2nd-opinion has-patch needs-testing  |     Focuses:
  dev-feedback                                   |
-------------------------------------------------+-------------------------

Comment (by my1xt):

 @SergeyBiryukov I think we can ax phpass altogether in new versions now
 that WP is committed to use recent PHP versions, and in fact that oldest
 version stated to work is something in 5.6

 https://wordpress.org/about/requirements/
 "WordPress also works with PHP 5.6.20"

 or was WP downgrading ever a thing?

-- 
Ticket URL: <https://core.trac.wordpress.org/ticket/21022#comment:126>
WordPress Trac <https://core.trac.wordpress.org/>
WordPress publishing platform


More information about the wp-trac mailing list