refactor: insecure uniqid usage

This commit is contained in:
HDVinnie
2020-12-02 21:18:16 -05:00
parent c4217aba2e
commit 817ce03fd0
10 changed files with 15 additions and 15 deletions
+2 -2
View File
@@ -527,7 +527,7 @@ class UserController extends Controller
\abort_unless($request->user()->id == $user->id, 403);
$user->passkey = \md5(\uniqid().\time().\microtime());
$user->passkey = \md5(\uniqid('', true).\time().\microtime());
$user->save();
\cache()->forget(\sprintf('user:%s', $user->passkey));
@@ -1102,7 +1102,7 @@ class UserController extends Controller
\abort_unless($request->user()->id == $user->id, 403);
$user->rsskey = \md5(\uniqid().\time().\microtime());
$user->rsskey = \md5(\uniqid('', true).\time().\microtime());
$user->save();
return \redirect()->route('user_security', ['username' => $user->username, 'hash' => '#rid'])