DAO Pattern angepasst & Passwörter gehashed
This commit is contained in:
+1
-1
@@ -19,7 +19,7 @@ if ($_SERVER["REQUEST_METHOD"] === "POST") {
|
||||
$user = $dao->findUser($email);
|
||||
|
||||
// Prüfung der Zugangsdaten
|
||||
if ($user && $user["password"] === $password) {
|
||||
if ($user && password_verify($password, $user["password"])){
|
||||
|
||||
// Session setzen = User ist eingeloggt
|
||||
$_SESSION["user"] = $user["username"];
|
||||
|
||||
Reference in New Issue
Block a user