Commit Graph

120 Commits

Author SHA1 Message Date
sxu 6427e0dd57 防止sql注入% 2025-07-10 10:25:29 +08:00
gaowdong 71beb8a099 6652 订单管理模块订单号输入英文字符查询报错 2025-07-03 10:51:26 +08:00
sxu e905875f68 厨房后场人员登录 2025-07-01 09:57:31 +08:00
sxu 3204f868fe Merge remote-tracking branch 'origin/bonus-jyy-smart-canteen' into bonus-jyy-smart-canteen 2025-07-01 08:55:11 +08:00
sxu f85497ce6b 厨房后场人员登录 2025-06-30 18:32:48 +08:00
gaowdong 3214250e09 安全扫描修复 2025-06-25 14:30:48 +08:00
sxu a5c5cfb4f9 临时用户生效日期 2025-06-04 17:17:57 +08:00
sxu a173f521a0 sys.visit.tokentime解析保护 2025-05-19 11:02:49 +08:00
sxu c7c5f3c2ed Revert "sys.visit.tokentime解析出错加保护"
This reverts commit 4178670171.
2025-05-16 18:38:00 +08:00
sxu 9eb49e1b09 sys.visit.tokentime解析出错加保护 2025-05-16 18:34:20 +08:00
sxu f34656b648 用户名密码解密登录 2025-05-09 15:36:57 +08:00
sxu 4017b7c9d4 取消单点登录 2025-04-16 16:31:26 +08:00
lizhenhua 86ed62d439 漏洞修复 用户 2025-02-10 16:50:18 +08:00
sxu bf7eade9ff 多公司模式合并提交 2025-01-10 12:09:15 +08:00
15856 7b9db9e320 i皖送统一认证登录接口初始密码优化 2024-12-27 10:19:08 +08:00
15856 49e65d6f67 i皖送统一认证登录接口编写 2024-12-20 09:41:34 +08:00
weiweiw 817f722332 修复sm4加密时异常处理 2024-12-20 08:32:28 +08:00
weiweiw 00a719d9ba 修复bug 2024-12-20 08:31:13 +08:00
weiweiw 40d3e27774 将公共微服务代码版本更新到24.12.0-SNAPSHOT 和修改RequiresPermissionsOrInnerAuth 不生效的问题 2024-12-16 09:21:38 +08:00
jiang e163d7fa66 用户登录问题修改 2024-12-08 17:32:36 +08:00
weiweiw 2e560ba205 修改systemconfig 取不到isAddRootCompany 和isAdmin的值的问题 2024-12-01 15:15:40 +08:00
weiweiw 9145bb86ba sql通配符过滤和具有审计管理和系统管理角色的用户应不允许被修改和删除 2024-11-20 11:34:51 +08:00
weiweiw f9a052bec5 将日志容量单位修改为GB,默认值为1 2024-11-18 09:49:37 +08:00
weiweiw 0f1bff9724 回滚关于IP伪造代码上的改动 2024-11-13 17:45:02 +08:00
weiweiw 03e730319e 自定义字符串验证码生成器 2024-11-13 15:22:12 +08:00
weiweiw 6a6d1d4c5e 修复X-Forwarded-For ip地址伪造 安全问题 2024-11-13 13:17:35 +08:00
weiweiw 0cae52d5ee 对token里面的username 进行加密 2024-11-12 18:31:44 +08:00
weiweiw 75936f519c 日志容量达到上限的90%进行告警 2024-11-12 14:54:47 +08:00
weiweiw e7f4c234bd 日志容量达到上限的90%进行告警 2024-11-12 10:52:02 +08:00
weiweiw 05196751c7 Merge remote-tracking branch 'origin/main' 2024-11-08 15:15:34 +08:00
weiweiw 511fc3e312 将所有delete 方法修改为post 2024-11-08 15:15:11 +08:00
jiang 3fde9294ac 用户登录问题修改 2024-11-08 14:59:49 +08:00
weiweiw 7addd31f7a Merge branch 'refs/heads/dev'
# Conflicts:
#	bonus-auth/src/main/java/com/bonus/auth/service/SysPasswordService.java
2024-11-07 09:11:04 +08:00
weiweiw 8a123a2549 增加登录成功和注册成功及登出成功的日志,修复 2024-11-07 09:01:17 +08:00
jiang 4311a41e50 用户登录问题修改 2024-11-06 20:56:19 +08:00
weiweiw 23beb395b3 将所有delete 方法修改为post 2024-11-06 12:00:41 +08:00
jiang d57ab0ea5c 用户登录问题修改 2024-11-06 09:06:56 +08:00
jiang 52b76ca87e Merge remote-tracking branch 'origin/main' 2024-11-05 14:44:58 +08:00
jiang 6561e01856 用户登录问题修改 2024-11-05 14:44:39 +08:00
weiweiw 1fb44349dd 修复渗透测试漏洞 2024-11-05 09:03:42 +08:00
weiweiw 0b184bb2c5 增加参数过滤的拦截器和给用户增加是否内部和是否长期用户标识 2024-11-04 16:18:26 +08:00
weiweiw ca002de02b 提交漏交的文件 2024-11-04 10:14:32 +08:00
weiweiw c3786088c1 提交漏交的文件 2024-11-04 10:05:43 +08:00
weiweiw 16065505da 文件存储服务传入的url要先base64编码再URI编码 2024-10-31 08:52:07 +08:00
weiweiw 29f7b885da 提交漏交的文件 2024-10-29 15:52:21 +08:00
jiang 1c04ab1602 用户登录问题修改 2024-10-29 14:17:22 +08:00
lizhenhua 5f786cd3db Merge remote-tracking branch 'origin/main' into main
# Conflicts:
#	bonus-modules/bonus-system/src/main/java/com/bonus/system/service/impl/SysDeptServiceImpl.java
2024-10-28 10:59:07 +08:00
lizhenhua 68662e56e1 漏洞修复 2024-10-28 10:55:53 +08:00
weiweiw daa8776312 增加支持在请求里增加skipPermission 可以跳过权限验证 2024-10-23 15:49:12 +08:00
sxu e7ac7bdae0 24.10.0-SNAPSHOT 2024-10-16 15:07:11 +08:00