PT-2024-40255 · Packagist · Silverstripe/Framework

Published

2024-05-27

·

Updated

2024-05-27

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions: No vulnerable software versions are specified.
Description: The issue concerns the internal salt used for password hashing not being updated when a user changes their password. This behavior has been improved to reset the salt upon password change.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this issue.

Related Identifiers

GHSA-F3WP-XPV2-6VMG

Affected Products

Silverstripe/Framework