From b8cbb167d493191eee2dafec1949fcdd47dddaca Mon Sep 17 00:00:00 2001 From: Andrew Dolgov Date: Fri, 16 Aug 2024 14:28:20 +0300 Subject: enforce lowercase usernames while keeping backwards-compatibility for authentication --- plugins/auth_internal/init.php | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) (limited to 'plugins/auth_internal') diff --git a/plugins/auth_internal/init.php b/plugins/auth_internal/init.php index 881d867cf..6dd79373d 100644 --- a/plugins/auth_internal/init.php +++ b/plugins/auth_internal/init.php @@ -116,7 +116,7 @@ class Auth_Internal extends Auth_Base implements IAuthModule2 { if ($login) { $user = ORM::for_table('ttrss_users') - ->where('login', $login) + ->where_raw('LOWER(login) = LOWER(?)', [$login]) ->find_one(); if ($user) { -- cgit v1.2.3-54-g00ecf