Bug with single quotes in passwords
-
Hi –
I created a password that had a single quote (apostrophe) in it.
It then didn’t work, no matter how carefully I typed.
I then noticed that the welcome email I got expressed the password with
\’
in it. (that’s three backslashes, in case this message gets escaped)I then tried to log in, but this time added a backslash before the apostrophe. This worked.
So apparently passwords aren’t getting escaped properly. This means that users that have an apostrophe in their password will never be able to log in, unless they know to add a backslash before the apostrophe.
From the welcome email, I’d guess that the passwords are getting escaped twice when they should only be escaped once.
-
Staff monitor forum threads but in case they don’t pick this one up you could use this link to report this to them tomorrow during support hours http://wordpress.com/contact-support/
- The topic ‘Bug with single quotes in passwords’ is closed to new replies.