From 9afcf8f01ac6b5c3c054b9a49f1731d35aa868ed Mon Sep 17 00:00:00 2001 From: Ingo Schommer Date: Mon, 24 Feb 2014 18:45:18 +1300 Subject: [PATCH] Allow vetoing forgot password requests --- security/MemberLoginForm.php | 25 +++++++++++++++++++++---- 1 file changed, 21 insertions(+), 4 deletions(-) diff --git a/security/MemberLoginForm.php b/security/MemberLoginForm.php index cccdf9089..c95216b42 100644 --- a/security/MemberLoginForm.php +++ b/security/MemberLoginForm.php @@ -1,6 +1,14 @@ extend('forgotPassword', $member); + if($results && is_array($results) && in_array(false, $results, true)) { + return $this->controller->redirect('Security/lostpassword'); + } + if($member) { $token = $member->generateAutologinTokenAndStoreHash();