From 16d1b061d8462aa5da6792cd65e36819b21f9d3f Mon Sep 17 00:00:00 2001
From: wuxw <928255095@qq.com>
Date: 星期一, 23 十月 2023 01:09:56 +0800
Subject: [PATCH] 优化西宁浦发银行 渗透测试漏洞解决
---
service-user/src/main/java/com/java110/user/cmd/user/UserStaffModifyCmd.java | 7 ++++++-
1 files changed, 6 insertions(+), 1 deletions(-)
diff --git a/service-user/src/main/java/com/java110/user/cmd/user/UserStaffModifyCmd.java b/service-user/src/main/java/com/java110/user/cmd/user/UserStaffModifyCmd.java
index 464f77c..02e2e54 100644
--- a/service-user/src/main/java/com/java110/user/cmd/user/UserStaffModifyCmd.java
+++ b/service-user/src/main/java/com/java110/user/cmd/user/UserStaffModifyCmd.java
@@ -27,6 +27,7 @@
import com.java110.utils.exception.CmdException;
import com.java110.utils.util.Assert;
import com.java110.utils.util.BeanConvertUtil;
+import com.java110.utils.util.StringUtil;
import org.apache.commons.lang3.StringUtils;
import org.springframework.beans.factory.annotation.Autowired;
@@ -39,7 +40,8 @@
url = "http://{ip}:{port}/app/user.staff.modify",
resource = "userDoc",
author = "鍚村鏂�",
- serviceCode = "user.staff.modify"
+ serviceCode = "user.staff.modify",
+ seq = 4
)
@Java110ParamsDoc(params = {
@@ -163,6 +165,9 @@
}
}
}
+ if (paramObj.containsKey("email") && !StringUtil.isEmpty(paramObj.getString("email"))) {
+ Assert.isEmail(paramObj, "email", "涓嶆槸鏈夋晥鐨勯偖绠辨牸寮�");
+ }
int flag = userV1InnerServiceSMOImpl.updateUser(userPo);
if (flag < 1) {
--
Gitblit v1.8.0