You are viewing a single thread.
View all comments 51 points
So they’re not hashing or salting the passwords too. Cool…
1 point
*
9 points
Which makes me want to try and insert a password of a few megabytes worth of text. Should be fine, since there is no max lenght defined, right?
4 points
17 points
They might be doing it in the DB query, but they’re definitely not sanitized beforehand.
2 points
2 points