Details
-
Bug
-
Resolution: Fixed
-
Critical
-
11.10.5, 15.8
-
None
-
Integration
-
Unknown
-
N/A
-
N/A
-
Description
Steps to reproduce :
- Start a fresh wiki, configure it without guest access
- Create a new user, let's call it "Bob"
- Update the section "Users & Rights > Registration" of the administration, so that passwords require at least 12 characters
- Bob lost his password, use the "Reset password" functionality to get an email with a reset password link
- Clicking on the link, you can update Bob's password, but here you can put a weak password, something like "Yolololo", which is not 12 chars long.
Attachments
Issue Links
- causes
-
XWIKI-21898 Reset password doesn't work properly with rule to force a symbol
- Closed
- is related to
-
XWIKI-11309 Give the possibility to pick the password security level
- Closed
- relates to
-
XWIKI-21444 Registration configuration not properly taken into account in close wiki
- Closed