WordPress.org

Making WordPress.org

Changeset 6787


Ignore:
Timestamp:
02/27/2018 03:10:08 AM (3 years ago)
Author:
dd32
Message:

2FA: Remove reminents of wp-auth-nonce.

See #77.

File:
1 edited

Legend:

Unmodified
Added
Removed
  • sites/trunk/wordpress.org/public_html/wp-content/plugins/wporg-two-factor/wporg-two-factor.php

    r6786 r6787  
    278278            <form name="validate_2fa_form" id="loginform" action="<?php echo esc_url( set_url_scheme( add_query_arg( 'action', 'validate_2fa', $wp_login_url ), 'login_post' ) ); ?>" method="post" autocomplete="off">
    279279                <input type="hidden" name="provider"      id="provider"      value="<?php echo esc_attr( $provider_class ); ?>" />
    280                 <input type="hidden" name="wp-auth-id"    id="wp-auth-id"    value="<?php echo esc_attr( $user->ID ); ?>" />
    281                 <input type="hidden" name="wp-auth-nonce" id="wp-auth-nonce" value="<?php echo esc_attr( $login_nonce ); ?>" />
    282280                <?php if ( $interim_login ) : ?>
    283281                    <input type="hidden" name="interim-login" value="1" />
     
    296294                'action'        => 'backup_2fa',
    297295                'provider'      => $backup_classname,
    298                 'wp-auth-id'    => $user->ID,
    299                 'wp-auth-nonce' => $login_nonce,
    300296                'redirect_to'   => $redirect_to,
    301297                'rememberme'    => $rememberme,
Note: See TracChangeset for help on using the changeset viewer.