Broken Authentication
Insecure Password Storage in Python
Vulnerability: Insecure Password Storage
Vulnerable Code:
Reason for vulnerability: Passwords are stored in plain text, making them easily accessible if the database is compromised.
Fixed Code:
Reason for fix: Using bcrypt
to hash passwords before storing them ensures that even if the database is compromised, the passwords are not easily recoverable.
Last updated