Skip to content

Commit d96b432

Browse files
committed
Returns error if user tries to change password to current password
1 parent 1942eeb commit d96b432

1 file changed

Lines changed: 3 additions & 1 deletion

File tree

app/app/Http/Controllers/PasswordRecoveryController.php

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -79,7 +79,9 @@ public function resetPassword(Request $request)
7979
'password_confirm' => 'required|same:new_password'
8080
);
8181
$validator = Validator::make(Input::all(), $validation_rules);
82-
if ($validator->fails()) {
82+
if (BaseUser::authenticate($user_email, $request->input('new_password'))) {
83+
return Redirect::back()->withErrors(['New password must be different than old']);
84+
} elseif ($validator->fails()) {
8385
return Redirect::back()->withErrors($validator)->withInput();
8486
} else {
8587
$user->password_hash = User::generateSaltedHash($request->input('new_password'));

0 commit comments

Comments
 (0)