Merge pull request #174 from DankDumpster/72-char

Make password limit 72 to match discord's limit
This commit is contained in:
Flam3rboy 2021-07-22 18:22:12 +02:00 committed by GitHub
commit 707e94614b
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
2 changed files with 3 additions and 3 deletions

View File

@ -15,7 +15,7 @@ router.post(
RateLimit({ count: 5, window: 60, onylIp: true }),
check({
login: new Length(String, 2, 100), // email or telephone
password: new Length(String, 8, 64),
password: new Length(String, 8, 72),
$undelete: Boolean,
$captcha_key: String,
$login_source: String,

View File

@ -16,8 +16,8 @@ router.post(
check({
username: new Length(String, 2, 32),
// TODO: check min password length in config
// prevent Denial of Service with max length of 64 chars
password: new Length(String, 8, 64),
// prevent Denial of Service with max length of 72 chars
password: new Length(String, 8, 72),
consent: Boolean,
$email: new Length(Email, 5, 100),
$fingerprint: String,