优化接口路径的过滤
This commit is contained in:
@@ -38,7 +38,7 @@ public class LogCostFilter implements Filter {
|
||||
HttpServletRequest servletRequest = (HttpServletRequest) request;
|
||||
HttpServletResponse servletResponse = (HttpServletResponse) response;
|
||||
String requestUrl = servletRequest.getRequestURI();
|
||||
if(requestUrl.contains("../") || requestUrl.contains("..;/") || requestUrl.contains("%2e") || requestUrl.contains("%2E")) {
|
||||
if(requestUrl.contains("..") || requestUrl.contains("%2e") || requestUrl.contains("%2E")) {
|
||||
servletResponse.setStatus(500);
|
||||
servletResponse.getWriter().write("loginOut");
|
||||
return;
|
||||
|
||||
Reference in New Issue
Block a user