From de2961b75418634c08ccb9f8749e4f31498a8c2c Mon Sep 17 00:00:00 2001 From: Xephi59 Date: Thu, 11 Jun 2015 01:13:53 +0200 Subject: [PATCH] Check password strengh in ChangePasswordCommand too --- .../java/fr/xephi/authme/commands/ChangePasswordCommand.java | 5 +++++ 1 file changed, 5 insertions(+) diff --git a/src/main/java/fr/xephi/authme/commands/ChangePasswordCommand.java b/src/main/java/fr/xephi/authme/commands/ChangePasswordCommand.java index 24fc46f81..7ca904d15 100644 --- a/src/main/java/fr/xephi/authme/commands/ChangePasswordCommand.java +++ b/src/main/java/fr/xephi/authme/commands/ChangePasswordCommand.java @@ -53,6 +53,11 @@ public class ChangePasswordCommand implements CommandExecutor { return true; } + String lowpass = args[1].toLowerCase(); + if ((lowpass.contains("delete") || lowpass.contains("where") || lowpass.contains("insert") || lowpass.contains("modify") || lowpass.contains("from") || lowpass.contains("select") || lowpass.contains(";") || lowpass.contains("null")) || !lowpass.matches(Settings.getPassRegex)) { + m.send(player, "password_error"); + return true; + } try { String hashnew = PasswordSecurity.getHash(Settings.getPasswordHash, args[1], name);