Skip to Main Content
Customer Feedback

We love feedback from you on our products and the problems in your daily work that you would like us to solve. Please describe the challenge you're encountering and your desired outcome. Be as detailed as possible.

For technical issues or bugs please head to Support or our Developer Community. You can assign up to 20 votes in total. Thank you for your feedback.

Status explanation: 'Future Consideration' = Continuing to collect further feedback, not planned at this time. 'Investigating' = Prioritized for deeper customer and feasibility investigations ahead of planning development.

Categories Roles and Security
Created by Guest
Created on Oct 19, 2021

On CMS login page the password type input with auto-complete is enabled

On CMS login page the password type input with auto-complete is enabled causing the penetration test of the CMS to fail for some of our clients. See below from the report


"When a new username and password is entered and submitted in a form, the browser asks whether the credentials should be saved. When the form is displayed to the user in subsequent events, the credentials are populated automatically or presented to the user as auto-complete options. An attacker with local access can obtain these credentials in cleartext from the browser cache. "