WordPress.org

Make WordPress Core


Ignore:
File:
1 edited

Legend:

Unmodified
Added
Removed
  • trunk/src/wp-login.php

    r30418 r29644  
    572572        list( $rp_login, $rp_key ) = explode( ':', wp_unslash( $_COOKIE[ $rp_cookie ] ), 2 );
    573573        $user = check_password_reset_key( $rp_key, $rp_login );
    574         if ( isset( $_POST['pass1'] ) && ! hash_equals( $rp_key, $_POST['rp_key'] ) ) {
    575             $user = false;
    576         }
    577574    } else {
    578575        $user = false;
     
    644641    do_action( 'resetpass_form', $user );
    645642    ?>
    646     <input type="hidden" name="rp_key" value="<?php echo esc_attr( $rp_key ); ?>" />
    647643    <p class="submit"><input type="submit" name="wp-submit" id="wp-submit" class="button button-primary button-large" value="<?php esc_attr_e('Reset Password'); ?>" /></p>
    648644</form>
Note: See TracChangeset for help on using the changeset viewer.