修正用户列表选择的selectData变量可能造成XSS漏洞

This commit is contained in:
thinkgem
2018-08-09 22:45:19 +08:00
parent 19ba6daea7
commit 0e67815b8d
3 changed files with 10 additions and 3 deletions

View File

@@ -77,7 +77,7 @@
</div>
<% } %>
<script>
var selectData = JSON.parse(js.decodeUrl('${isNotBlank(selectData!) ? selectData! : "{\}"}')),
var selectData = ${isNotBlank(selectData!) ? selectData! : "{\}"},
selectNum = 0, dataGrid = $('#dataGrid').dataGrid({
searchForm: $("#searchForm"),
columnModel: [