From f106afc0f9a640b72d559889064326f799c320f9 Mon Sep 17 00:00:00 2001 From: YunaiV Date: Sun, 9 Apr 2023 10:09:07 +0800 Subject: [PATCH] =?UTF-8?q?!451=20xss=E8=AF=B7=E6=B1=82Wrapper=20getAttrib?= =?UTF-8?q?ute=E6=96=B9=E6=B3=95=20=E9=97=AE=E9=A2=98=E4=BF=AE=E5=A4=8D?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- .../yudao/framework/web/core/filter/XssRequestWrapper.java | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/yudao-framework/yudao-spring-boot-starter-web/src/main/java/cn/iocoder/yudao/framework/web/core/filter/XssRequestWrapper.java b/yudao-framework/yudao-spring-boot-starter-web/src/main/java/cn/iocoder/yudao/framework/web/core/filter/XssRequestWrapper.java index 7beed46cc..9118229e3 100644 --- a/yudao-framework/yudao-spring-boot-starter-web/src/main/java/cn/iocoder/yudao/framework/web/core/filter/XssRequestWrapper.java +++ b/yudao-framework/yudao-spring-boot-starter-web/src/main/java/cn/iocoder/yudao/framework/web/core/filter/XssRequestWrapper.java @@ -63,7 +63,7 @@ public class XssRequestWrapper extends HttpServletRequestWrapper { public Object getAttribute(String name) { Object value = super.getAttribute(name); if (value instanceof String) { - xssCleaner.clean((String) value); + return xssCleaner.clean((String) value); } return value; }