about summary refs log tree commit diff
path: root/app/views/auth/challenges/new.html.haml
diff options
context:
space:
mode:
authorClaire <claire.github-309c@sitedethib.com>2022-11-08 03:53:06 +0100
committerGitHub <noreply@github.com>2022-11-08 03:53:06 +0100
commit9f4930ec11b4185fcb17e5394fd0234dfcf16ed3 (patch)
tree4cbffd3dbab4afb77ab583fa7714c46c06c384b0 /app/views/auth/challenges/new.html.haml
parent608343c135c087ab7fa9bd401dce8a705720fdb8 (diff)
Add password autocomplete hints (#20071)
Fixes #20067

Our password autocomplete hints were “off” but that does not prevent current
browsers from trying to autocomplete them anyway, so use `current-password` and
`new-password` so they don't put a newly-generated password in a password
confirmation prompt, or the old password for a password renewal prompt.
Diffstat (limited to 'app/views/auth/challenges/new.html.haml')
-rw-r--r--app/views/auth/challenges/new.html.haml2
1 files changed, 1 insertions, 1 deletions
diff --git a/app/views/auth/challenges/new.html.haml b/app/views/auth/challenges/new.html.haml
index 9aef2c35d..ff4b7a506 100644
--- a/app/views/auth/challenges/new.html.haml
+++ b/app/views/auth/challenges/new.html.haml
@@ -5,7 +5,7 @@
   = f.input :return_to, as: :hidden
 
   .field-group
-    = f.input :current_password, wrapper: :with_block_label, input_html: { :autocomplete => 'off', :autofocus => true }, label: t('challenge.prompt'), required: true
+    = f.input :current_password, wrapper: :with_block_label, input_html: { :autocomplete => 'current-password', :autofocus => true }, label: t('challenge.prompt'), required: true
 
   .actions
     = f.button :button, t('challenge.confirm'), type: :submit