Hamza-Ayed
2d607d9e90
Fix #19 : Plaintext OTP hashing + hardcoded server paths
...
- Changed OTP storage in Admin/auth/login.php from plaintext to sha256 hash
- Updated Admin/auth/verify_login.php to hash user input before comparison
- Replaced hardcoded /home/siro-api/ paths with environment variables:
- ERROR_LOG_PATH, ENV_FILE_PATH, SECRET_KEY_PAY_PATH, SECRET_KEY_PATH
- Falls back to __DIR__-relative paths when env vars are unset
2026-06-17 07:49:46 +03:00
..
2026-06-17 07:49:46 +03:00
2026-06-17 07:48:31 +03:00
2026-06-09 08:40:31 +03:00
2026-06-17 07:49:46 +03:00
2026-06-12 20:40:40 +03:00
2026-06-16 17:47:19 +03:00
2026-06-17 07:48:31 +03:00
2026-06-09 08:40:31 +03:00
2026-06-09 08:40:31 +03:00
2026-06-16 01:17:29 +03:00
2026-06-09 08:40:31 +03:00
2026-06-17 07:48:31 +03:00
2026-06-17 07:48:31 +03:00
2026-06-12 20:40:40 +03:00
2026-06-16 17:47:19 +03:00
2026-06-16 17:47:19 +03:00
2026-06-11 13:47:40 +03:00
2026-06-16 01:17:29 +03:00
2026-06-12 20:40:40 +03:00
2026-06-16 01:17:29 +03:00
2026-06-11 13:47:40 +03:00
2026-06-17 07:49:46 +03:00
2026-06-17 06:53:00 +03:00
2026-06-09 08:40:31 +03:00
2026-06-09 08:40:31 +03:00
2026-06-12 20:40:40 +03:00
2026-06-11 13:47:40 +03:00
2026-06-11 13:47:40 +03:00
2026-06-11 13:47:40 +03:00
2026-06-12 20:40:40 +03:00
2026-06-16 01:17:29 +03:00
2026-06-16 01:17:29 +03:00
2026-06-16 01:17:29 +03:00
2026-06-16 01:17:29 +03:00
2026-06-16 01:17:29 +03:00
2026-06-16 02:52:06 +03:00
2026-06-16 01:17:29 +03:00
2026-06-17 07:48:31 +03:00
2026-06-12 20:40:40 +03:00
2026-06-17 07:48:31 +03:00
2026-06-10 02:44:55 +03:00
2026-06-16 17:47:19 +03:00
2026-06-12 20:40:40 +03:00
2026-06-12 20:40:40 +03:00
2026-06-16 01:17:29 +03:00
2026-06-15 01:37:41 +03:00
2026-06-15 01:37:41 +03:00
2026-06-15 19:39:21 +03:00
2026-06-17 06:57:56 +03:00
2026-06-17 06:22:41 +03:00