What method can I apply if I want a user to edit their original password after storing as hash.
DO NOT store an unhashed password in the database.
DO NOT show passwords in the 'change password form'
DO NOT show password hashes anywhere.
Provide the user with a form to edit the password but do not provide the previous one. Just show the user an empty text box for inserting a new password while also having a text box for the user to input their current password.
You can check any password hashed with
true just use an
UPDATE query to change the stored hash.