From 9f56d8024052fe26667d50db2c969ad27f9968bc Mon Sep 17 00:00:00 2001 From: thinkgem Date: Fri, 28 May 2021 00:54:38 +0800 Subject: [PATCH] =?UTF-8?q?xssFilter=E5=8E=BB=E6=8E=89UReport=E7=9A=84?= =?UTF-8?q?=E5=8D=95=E5=BC=95=E5=8F=B7=E5=92=8C=E5=8F=8C=E5=BC=95=E5=8F=B7?= =?UTF-8?q?=E7=9A=84=E6=9B=BF=E6=8D=A2?= MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit --- common/src/main/java/com/jeesite/common/codec/EncodeUtils.java | 1 + 1 file changed, 1 insertion(+) diff --git a/common/src/main/java/com/jeesite/common/codec/EncodeUtils.java b/common/src/main/java/com/jeesite/common/codec/EncodeUtils.java index 90fcbacc..5c845ad1 100644 --- a/common/src/main/java/com/jeesite/common/codec/EncodeUtils.java +++ b/common/src/main/java/com/jeesite/common/codec/EncodeUtils.java @@ -232,6 +232,7 @@ public class EncodeUtils { && !StringUtils.contains(value, "id=\"FormHtml\"") // JFlow && !(StringUtils.startsWith(value, "{") && StringUtils.endsWith(value, "}")) // JSON Object && !(StringUtils.startsWith(value, "[") && StringUtils.endsWith(value, "]")) // JSON Array + && !(request != null && StringUtils.contains(request.getRequestURI(), "/ureport/")) // UReport ){ StringBuilder sb = new StringBuilder(); for (int i = 0; i < value.length(); i++) {