Skip to content

Enhance password checks for common bad passwords  #1366

@thomasbeaudry

Description

@thomasbeaudry

What Happened?

If you have a username (groupmanager21), you can set the password to be identical to the username and it will be accepted since it's considered "secure enough".

What Did You Expect?

For a system message to tell you that the password can't match the username and for it to reject it.

Operating System

ubuntu

Browser (if applicable)

No response

Steps to Reproduce

No response

Anything Else?

No response

Metadata

Metadata

Assignees

Labels

BugSomething isn't working

Type

No type
No fields configured for issues without a type.

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions