Details
-
Task
-
Resolution: Unresolved
-
P2: Important
-
None
-
None
-
None
Description
For command like register or enable-email-notification,
we allow password to be sent from command line to server host via HTTP, this might cause some security issue as the password is shown in plain text, we might need to use HTTPS or encrypt the whole request to secure the password field