From d1f8b2ed17b5290bc67b5fb757dde1a381a88907 Mon Sep 17 00:00:00 2001 From: zendwang <wangzhenxian@idadt.com> Date: 星期一, 04 七月 2022 13:07:07 +0800 Subject: [PATCH] update 优化魔法值 --- ruoyi-common/src/main/java/com/ruoyi/common/filter/XssFilter.java | 5 +++-- 1 files changed, 3 insertions(+), 2 deletions(-) diff --git a/ruoyi-common/src/main/java/com/ruoyi/common/filter/XssFilter.java b/ruoyi-common/src/main/java/com/ruoyi/common/filter/XssFilter.java index f397de1..e7b70c8 100644 --- a/ruoyi-common/src/main/java/com/ruoyi/common/filter/XssFilter.java +++ b/ruoyi-common/src/main/java/com/ruoyi/common/filter/XssFilter.java @@ -1,5 +1,6 @@ package com.ruoyi.common.filter; +import com.ruoyi.common.enums.HttpMethod; import com.ruoyi.common.utils.StringUtils; import javax.servlet.*; @@ -33,7 +34,7 @@ @Override public void doFilter(ServletRequest request, ServletResponse response, FilterChain chain) - throws IOException, ServletException { + throws IOException, ServletException { HttpServletRequest req = (HttpServletRequest) request; HttpServletResponse resp = (HttpServletResponse) response; if (handleExcludeURL(req, resp)) { @@ -48,7 +49,7 @@ String url = request.getServletPath(); String method = request.getMethod(); // GET DELETE 涓嶈繃婊� - if (method == null || method.matches("GET") || method.matches("DELETE")) { + if (method == null || method.matches(HttpMethod.GET.name()) || method.matches(HttpMethod.DELETE.name())) { return true; } return StringUtils.matches(url, excludes); -- Gitblit v1.9.3