Pain point · Permissions & security · Blocks work
Passwords hashed with unsalted MD5
1 source thread · first seen 2008-07
Summary
The reporter points out that passwords are stored with md5 and no salt, which is considered insecure.
Evidence
Excerpts are copied word for word from the source; follow the link to read it in full.
“What I can see from code is that passwords are hashed with md5, but without a salt”