Commit Graph

70 Commits

Author SHA1 Message Date
October 0e601d9d30 据国家网络与信息安全信息通报中心监测发现,阿里巴巴公司开源Java开发组件fastjson存在反序列化漏洞。fastjson被众多java软件作为组件集成,广泛存在于java应用的服务端代码中。攻击者可利用上述漏洞实施任意文件写入、服务端请求伪造等攻击行为,造成服务器权限被窃取、敏感信息泄漏等严重影响。此次事件影响fastjson 1.2.80及之前所有版本。目前,阿里巴巴公司已发布fastjson最新版本1.2.83以修复该漏洞,组件升级地址为:https://github.com/alibaba/fastjson/releases/tag/1.2.83。 请各单位高度重视,迅速通报预警本辖区、本系统单位,及时排查梳理受影响情况,在确保安全的前提下修复漏洞、消除隐患,提高网络系统安全防护能力,严防网络攻击事件。同时,加强安全监测,做好应急处置准备,发现突出情况要迅速处置并第一时间报告。
Signed-off-by: October <githubgit@163.com>
2022-05-26 10:04:10 +08:00
YunaiV 73bf0b6f4f 鍘婚櫎 LoginUser 鐨 updateTime銆乽sername銆乸assword銆乻tatus 瀛楁锛岀畝鍖 2022-05-07 01:30:37 +08:00
YunaiV 8737674d74 鍘婚櫎 LoginUser 鐨 roleIds銆乨eptId 瀛楁锛岀畝鍖 2022-05-07 00:39:39 +08:00
YunaiV b34e2691f8 鏀寔涓绘祦鏁版嵁搴撶殑浠g爜鐢熸垚 2022-04-29 23:14:34 +08:00
YunaiV 7ce7baa2d2 澧炲姞鏁版嵁婧愮鐞 2022-04-27 23:15:43 +08:00
YunaiV a2f405f8bd * 銆愬崌绾с憇pring-boot from 2.5.10 to 2.5.12 锛氫慨澶 RCE 婕忔礊
* 銆愬崌绾с憆edisson from 3.16.6 to 3.17.0 锛氭彁鍗 Redisson 瀹㈡埛绔殑绋冲畾鎬
2022-04-16 12:28:01 +08:00
FinallySays 6fd52dfbb6 鎺ュ叆鑵捐浜戠煭淇 2022-04-04 17:30:58 +08:00
YunaiV 315be160a8 鍚屾鏈鏂 SQL锛屽噯澶囧彂甯 1.6.1 鐗堟湰 2022-03-20 02:32:18 +08:00
YunaiV d1517cddb7 * 銆愬崌绾с慳pollo-client from 1.7.0 to 1.9.2
* 銆愬崌绾с慻uide from 4.1.0 to 5.1.0 锛氳В鍐 Apollo 鍦 JDK 17 鏃犳硶鍚姩鐨勯棶棰
2022-03-20 02:31:27 +08:00
YunaiV 34a7399a65 浣跨敤 minio client 鏇夸唬 amazon 瀹㈡埛绔紝杩涜 S3 鐨勫鎺 2022-03-19 17:27:35 +08:00
YunaiV 18a5c46284 瀹屾垚 FileConfig 鐨勫悗绔ā鍧 2022-03-15 22:30:52 +08:00
YunaiV e5b711409c 淇敼鐗堟湰鍙蜂负 1.6.0锛屽噯澶 Flowable 宸ヤ綔娴佸彂鐗堬紒 2022-03-06 09:46:24 +08:00
YunaiV 882660a3a7 Merge branch 'master' of https://gitee.com/zhijiantianya/ruoyi-vue-pro into feature/flowable 2022-02-27 13:47:34 +08:00
YunaiV ec8b356ba6 v.1.5.1 鍙戝竷锛屼紭鍖栧绉熸埛鍔熻兘锛屾敮鎸佽嚜鍔ㄥ垱寤虹敤鎴枫佽鑹茬瓑淇℃伅 2022-02-27 13:40:10 +08:00
YunaiV 66d6825657 * 銆愬崌绾с憇pring-boot from 2.5.9 to 2.5.10
* 銆愬崌绾с憁ybatis-plus from 3.4.3.4 to 3.5.1
2022-02-27 01:48:13 +08:00
jason 073d860a78 宸ヤ綔娴 Flowable 鍙戣捣娴佺▼ 鐩稿叧瀹炵幇 2022-02-18 09:35:40 +08:00
Jelly 5e43efc555 fix:淇 Maven 鏋勫缓涓浜涙彁绀 2022-02-10 11:16:17 +08:00
YunaiV d5c35c23dc 鍒濆鍖 1.5.0-snapshot 鐗堟湰 2022-02-07 16:12:37 +08:00
YunaiV 470d1a3a35 * 銆愬崌绾с慡pring Boot Admin from 2.3.2 to 2.6.2锛屾彁渚涙洿濂界殑鐩戞帶鑳藉姏 2022-02-04 18:26:02 +08:00
YunaiV 6441883855 銆愬崌绾с憇pring-boot from 2.4.12 to 2.5.9锛屾渶鏂扮殑 Spring Boot 2.6.X 鍦ㄧ瓑鏇存祦琛屼竴浜涳紝绋冲畾绗竴 2022-02-04 14:26:05 +08:00
YunaiV eb2ab3cc4d 娓呯悊澶氫綑鏂囦欢涓庨厤缃 2022-02-04 01:56:41 +08:00
YunaiV 8d59384904 澶氭ā鍧楅噸鏋 10锛氬幓闄 Freemarker 渚濊禆锛屼慨鏀瑰瓧鍏哥殑鍓嶇紑锛屼粠 sys=銆媠ystem銆乮nf=銆媔nfra 瑙佸悕鐭ユ剰 2022-02-02 01:27:04 +08:00
YunaiV 510917c5ed 澶氭ā鍧楅噸鏋 8锛歜om 妯″潡鐨勮皟鏁 2022-01-31 22:55:48 +08:00
YunaiV 6aca4ae9fd Merge branch 'feature/multi-module' of https://gitee.com/zhijiantianya/ruoyi-vue-pro into feature/flowable
 Conflicts:
	pom.xml
	yudao-module-bpm/yudao-module-bpm-activiti/src/main/java/cn/iocoder/yudao/adminserver/modules/bpm/framework/activiti/config/BpmActivitiConfiguration.java
2022-01-29 10:06:00 +08:00
jason afa0d623db 澧炲姞 bpm-core-service 澶氭ā鍧 2022-01-27 22:08:34 +08:00
YunaiV 06fa85a353 澶氭ā鍧楅噸鏋 1锛氬皢 yudao-user-server 娑夊強鍒 member 妯″潡鐨勯昏緫锛岄兘杩佺Щ鍒 yudao-module-member 涓 2022-01-27 13:34:25 +08:00
jason 4ba064d8b3 鎶藉彇 activiti 鍒癿odule-bpm-activiti, 涓烘帴鍏lowable 鍑嗗 2022-01-26 15:57:38 +08:00
YunaiV eeb665739a 浼樺寲 Activiti 鐨勪緷璧栫鐞 2022-01-23 13:02:31 +08:00
YunaiV f94435d592 * 銆愬崌绾с憆edisson from 3.16.3 to 3.16.6锛岃В鍐 Stream 鍦ㄨ皟璇曞満鏅笅浼氬瓨鍦 NPE 鐨勯棶棰
* 銆愬崌绾с憇pring-boot from 2.4.5 to 2.4.12锛屾渶鏂扮殑 Spring Boot 2.6.X 鍦ㄧ瓑鏇存祦琛屼竴浜涳紝绋冲畾绗竴
* 銆愬崌绾с慸ruid from 1.2.4 to 1.2.8锛屾彁鍗囨暟鎹簱杩炴帴姹犵殑绋冲畾鎬
* 銆愬崌绾с慸ynamic-datasource from 3.3.2 to 3.5.0锛屼慨澶嶅姩鎬佹暟鎹簮鍒囨崲鐨勯棶棰
2021-12-16 09:08:05 +08:00
YunaiV a92acff99b 1. 鍗囩骇 1.3.0-snapshot 鐗堟湰
2.銆愪慨澶嶃慴iz-data-permission 缁勪欢鐨勭紦瀛樻満鍒讹紝瀵艰嚧閮ㄥ垎 SQL 鏈繘琛屾暟鎹繃婊
2021-12-16 07:19:52 +08:00
YunaiV 1801250516 yudao-spring-boot-starter-data-permission 鍜 yudao-spring-boot-starter-tenant 璋冩暣涓 biz 缁勪欢 2021-12-15 10:18:29 +08:00
YunaiV 9d97c0ccb4 yudao-spring-boot-starter-data-permission 鍜 yudao-spring-boot-starter-tenant 璋冩暣涓 biz 缁勪欢 2021-12-15 10:06:02 +08:00
YunaiV 986cb72421 鍩轰簬閮ㄩ棬鐨勬暟鎹潈闄 2021-12-13 00:28:20 +08:00
YunaiV 2334e177c5 1. 寮曞叆 mockito-inline
2. 浼樺寲銆愭暟鎹潈闄愩戠殑鍗曞厓娴嬭瘯
2021-12-11 15:38:20 +08:00
YunaiV 814c2db65c 鍒濆鍖栨暟鎹潈闄愭ā鍧 2021-12-07 21:19:23 +08:00
YunaiV 7c8fe2fc50 1. 澧炲姞 yudao-spring-boot-starter-tenant 绉熸埛鐨勭粍浠
2. 鏀归 UserDO锛屾帴鍏ュ绉熸埛
2021-12-04 21:09:49 +08:00
YunaiV 0050b1e46d Merge branch 'master' of https://gitee.com/zhijiantianya/ruoyi-vue-pro into feature/activiti
 Conflicts:
	yudao-dependencies/pom.xml
	yudao-framework/pom.xml
2021-10-30 10:24:58 +08:00
YunaiV c3aa2acddf Merge branch 'master' of https://gitee.com/zhijiantianya/ruoyi-vue-pro into feature/user-social
 Conflicts:
	yudao-admin-server/pom.xml
	yudao-dependencies/pom.xml
	yudao-user-server/src/main/resources/application-dev.yaml
	yudao-user-server/src/main/resources/application-local.yaml
2021-10-30 09:30:18 +08:00
YunaiV 55e5ca4644 code review 鐢ㄦ埛鍓嶅彴鐨勭ぞ浜ょ櫥闄 2021-10-28 08:46:51 +08:00
YunaiV 2df46a7c2d Merge branch 'master' of https://gitee.com/zhijiantianya/ruoyi-vue-pro into pay_extension
 Conflicts:
	鏇存柊鏃ュ織.md
2021-10-27 12:32:57 +08:00
YunaiV 65843d55a0 淇敼鐗堟湰鍙蜂负 1.2.0-snapshot 2021-10-27 10:17:42 +08:00
YunaiV 44f357cea4 鎺ュ叆 weixin-mp-java 锛岀紪鍐欑浉鍏崇ず渚嬨 2021-10-24 11:53:42 +08:00
jason 436781507e merge master change 2021-10-23 19:16:00 +08:00
YunaiV 81126b2b4b 1. 寮曞叆 IJPay 缁勪欢
2. 澧炲姞鍒涘缓鏀粯鍗曠殑 Service 瀹炵幇
2021-10-18 09:41:38 +08:00
YunaiV 043c05a083 淇闃块噷浜戠煭淇★紝鏃犳硶鍙戦佺殑闂 2021-10-12 09:24:58 +08:00
YunaiV 028c99aa10 瀹屾垚 user-admin-server 鐨勭敤鎴锋墜鏈 + 瀵嗙爜鐧诲綍 2021-10-10 16:56:22 +08:00
YunaiV 5b723d02b2 澧炲姞 yudao-core-service 妯″潡锛屾彁渚涘叡浜昏緫 2021-10-10 01:34:31 +08:00
YunaiV 5f80333232 Merge branch 'master' of https://gitee.com/zhijiantianya/ruoyi-vue-pro into oauth2
 Conflicts:
	yudao-framework/yudao-spring-boot-starter-security/src/main/java/cn/iocoder/yudao/framework/security/config/YudaoWebSecurityConfigurerAdapter.java
2021-09-28 09:33:55 +08:00
鑺嬮亾婧愮爜 98761ef1d3 !44 澧炲姞 yudao-user-server 鏈嶅姟
Merge pull request !44 from 鑺嬮亾婧愮爜/feature/user-admin-server
2021-09-28 01:22:11 +00:00
YunaiV 0439a5505a 鍒濆鍖栨暟鎹瓧鍏 2021-09-27 09:47:37 +08:00