解决开源的漏洞。

This commit is contained in:
chenxudong 2025-10-14 11:40:42 +08:00
parent 087750d86a
commit 8df5201079
3 changed files with 20 additions and 8 deletions

View File

@ -30,10 +30,10 @@
<artifactId>spring-boot-starter-web</artifactId>
</dependency>
<dependency>
<groupId>org.springframework.boot</groupId>
<artifactId>spring-boot-starter-test</artifactId>
</dependency>
<!-- <dependency>-->
<!-- <groupId>org.springframework.boot</groupId>-->
<!-- <artifactId>spring-boot-starter-test</artifactId>-->
<!-- </dependency>-->
<dependency>
<groupId>org.springframework.boot</groupId>
@ -77,7 +77,7 @@
<artifactId>jsqlparser</artifactId>
</exclusion>
</exclusions>
<version>5.1.2</version>
<version>5.3.1</version>
</dependency>
<!--引入druid数据源-->
<dependency>

View File

@ -4,6 +4,7 @@ import cn.hutool.core.bean.BeanUtil;
import cn.hutool.core.codec.Base64;
import cn.hutool.core.collection.CollUtil;
import cn.hutool.core.io.FileUtil;
import cn.hutool.core.io.IoUtil;
import cn.hutool.core.lang.Assert;
import cn.hutool.core.lang.tree.Tree;
import cn.hutool.core.lang.tree.TreeNodeConfig;
@ -33,7 +34,6 @@ import com.electromagnetic.industry.software.manage.service.ImportPrjService;
import jakarta.annotation.Resource;
import jakarta.servlet.http.HttpServletResponse;
import lombok.extern.slf4j.Slf4j;
import org.mockito.internal.util.io.IOUtil;
import org.springframework.core.io.FileSystemResource;
import org.springframework.core.io.InputStreamResource;
import org.springframework.http.HttpHeaders;
@ -137,7 +137,7 @@ public class ImportPrjServiceImpl extends ServiceImpl<ImportPrjInfoMapper, Impor
} catch (Exception e) {
throw new BizException("导入工程失败,原因 " + e.getMessage(), e);
} finally {
IOUtil.close(zipFile);
IoUtil.close(zipFile);
FileUtil.del(zipTmpPath);
}
return true;

View File

@ -32,7 +32,7 @@
<dependency>
<groupId>org.bouncycastle</groupId>
<artifactId>bcprov-jdk18on</artifactId>
<version>1.77</version>
<version>1.78</version>
</dependency>
<dependency>
<groupId>cn.hutool</groupId>
@ -70,6 +70,18 @@
<groupId>org.apache.poi</groupId>
<artifactId>poi-ooxml</artifactId>
<version>4.1.2</version>
<exclusions>
<exclusion>
<groupId>org.apache.commons</groupId>
<artifactId>commons-compress</artifactId>
</exclusion>
</exclusions>
</dependency>
<dependency>
<groupId>org.apache.commons</groupId>
<artifactId>commons-compress</artifactId>
<version>1.26.0</version>
</dependency>
<!--处理word文档需要的额外的jar包-->