-
Notifications
You must be signed in to change notification settings - Fork 11
Open
Description
Summary
The default login and password leaves the site open to bots installing malware if the database is pushed to a public server without those being removed
Basic example
Push the default database live and you'll likely see the site hacked within a day or two :)
Motivation
Changing those defaults to anything that wouldn't be randomly guessed should prevent this but not interfere with people setting up the theme
Reactions are currently unavailable
Metadata
Metadata
Assignees
Labels
No labels