use Friendica\Util\DateTimeFormat;
use Friendica\Util\Strings;
-require_once 'boot.php';
-require_once 'include/enotify.php';
-require_once 'include/text.php';
-
function lostpass_post(App $a)
{
- $loginame = Strings::removeTags(trim($_POST['login-name']));
+ $loginame = Strings::escapeTags(trim($_POST['login-name']));
if (!$loginame) {
$a->internalRedirect();
}
$condition = ['(`email` = ? OR `nickname` = ?) AND `verified` = 1 AND `blocked` = 0', $loginame, $loginame];
- $user = DBA::selectFirst('user', ['uid', 'username', 'email', 'language'], $condition);
+ $user = DBA::selectFirst('user', ['uid', 'username', 'nickname', 'email', 'language'], $condition);
if (!DBA::isResult($user)) {
notice(L10n::t('No valid account found.') . EOL);
$a->internalRedirect();
The login details are as follows:
Site Location: %2$s
- Login Name: %3$s', $resetlink, System::baseUrl(), $user['email']));
+ Login Name: %3$s', $resetlink, System::baseUrl(), $user['nickname']));
notification([
'type' => SYSTEM_EMAIL,
function lostpass_content(App $a)
{
- $o = '';
if ($a->argc > 1) {
$pwdreset_token = $a->argv[1];
- $user = DBA::selectFirst('user', ['uid', 'username', 'email', 'pwdreset_time', 'language'], ['pwdreset' => $pwdreset_token]);
+ $user = DBA::selectFirst('user', ['uid', 'username', 'nickname', 'email', 'pwdreset_time', 'language'], ['pwdreset' => $pwdreset_token]);
if (!DBA::isResult($user)) {
notice(L10n::t("Request could not be verified. \x28You may have previously submitted it.\x29 Password reset failed."));
function lostpass_generate_password($user)
{
$o = '';
- $a = get_app();
$new_password = User::generateNewPassword();
$result = User::updatePassword($user['uid'], $new_password);
'$lbl5' => '<a href="' . System::baseUrl() . '">' . L10n::t('click here to login') . '</a>.',
'$lbl6' => L10n::t('Your password may be changed from the <em>Settings</em> page after successful login.'),
'$newpass' => $new_password,
- '$baseurl' => System::baseUrl()
]);
info("Your password has been reset." . EOL);
Password: %3$s
You may change that password from your account settings page after logging in.
- ', System::baseUrl(), $user['email'], $new_password));
+ ', System::baseUrl(), $user['nickname'], $new_password));
notification([
'type' => SYSTEM_EMAIL,