Skip to content

[BUG] - Profile login details in plaintext in cookies #688

@bigbeka

Description

@bigbeka

Describe the bug
Looking into the dev console, I can see that profiles that are logged in have their IP, username and password saved in plaintext.

This is a very serious vulnerability. I am not sure if/what tasks there are to improve auth and security.

Expected behavior
I believe login session should be saved as token and not plaintext password.

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't workingjavascriptPull requests that update Javascript code

    Type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions