Solved this issue.
Code:
$sqldata = "SELECT * FROM xf_user_authenticate WHERE user_id = '$userId'";
$result = mysqli_query($link, $sqldata);
$rowdata = mysqli_fetch_array($result);
$data = unserialize($rowdata['data'])['hash'];
password_verify($password, $data) <- then compare with sanitized inputted password
Last edited: