diff --git a/server/fishtest/views.py b/server/fishtest/views.py index 982ef21624..3b40ee8951 100644 --- a/server/fishtest/views.py +++ b/server/fishtest/views.py @@ -166,8 +166,8 @@ def login(request): came_from = request.params.get("came_from", referrer) if request.method == "POST": - username = request.POST.get("username") - password = request.POST.get("password") + username = request.POST.get("username", "").strip() + password = request.POST.get("password", "").strip() token = request.userdb.authenticate(username, password) if "error" not in token: if request.POST.get("stay_logged_in"):