Use correct hashing algorithm for oauth2 token

This commit is contained in:
Damodar Lohani
2025-11-10 11:38:47 +00:00
parent c8e6fcc090
commit 47b653fd64
2 changed files with 5 additions and 4 deletions
@@ -141,7 +141,7 @@ class User extends Document
$token->isSet('expire') &&
$token->isSet('type') &&
($type === null || $token->getAttribute('type') === $type) &&
$proofForToken->verify($proofForToken->hash($secret), $token->getAttribute('secret')) &&
$proofForToken->verify($secret, $token->getAttribute('secret')) &&
DateTime::formatTz($token->getAttribute('expire')) >= DateTime::formatTz(DateTime::now())
) {
return $token;