I'm using 1.3.0 and YES it is already patched and I just don't know about it. Silly me!
So I just need modify the "SIGNUP CONFIRMATION" email template to let the customer know that they can login using email/passwd.
Thanks!
Added after 59 minutes:
OK, one more question....
Currently customer can signup multiple times by using
the same email address.
However, I think it should work like this:
1. Customer initially signup using his/her email.
2. For whatever reason, if the customer try to use the same email address to sign up again, the system (A2B) should notice the customer that the email has been registered already. Then A2B should offer the customer retrieve his/her password so the customer would keep using the same account.
Does this make any sense? or maybe I am wrong.