greenlight icon indicating copy to clipboard operation
greenlight copied to clipboard

fix(migrations): Set user password_digest only if it was received

Open danimo opened this issue 1 year ago • 3 comments

This fixes situations where after a migration from v2 due to a peculiar behavior, which refuses empty passwords but not empty password hashes, could end up with an empty password.

danimo avatar Mar 28 '24 14:03 danimo

Can you please merge this? it's still security relevant.

danimo avatar Jul 24 '24 13:07 danimo