0
Fork 0
mirror of https://github.com/TryGhost/Ghost.git synced 2025-03-11 02:12:21 -05:00
ghost/core
Fabien O'Carroll ae71f2deca Added spam prevention for v2 sessions (#10030)
no-issue

- Added spam prevention to POST /session
  - This blocks repeated requests the the /session endpoint preventing brute
force password attacks
- Updated session controller to reset brute middleware
  - This updates the session controller to reset the brute force protection
on a successful login. This is required so that a user is not locked out
forever :o!!
2018-10-18 09:58:29 +01:00
..
client@ed8f17a326 Updated Ghost-Admin to 2.2.3 2018-10-16 17:38:23 +01:00
server Added spam prevention for v2 sessions (#10030) 2018-10-18 09:58:29 +01:00
test Added spam prevention for v2 sessions (#10030) 2018-10-18 09:58:29 +01:00
index.js Changed where we trigger server start/stop announcement (#9815) 2018-08-22 13:28:31 +02:00