解决开源的漏洞。

This commit is contained in:
chenxudong 2025-10-14 11:40:42 +08:00
parent 087750d86a
commit 8df5201079
3 changed files with 20 additions and 8 deletions

View File

@ -30,10 +30,10 @@
<artifactId>spring-boot-starter-web</artifactId> <artifactId>spring-boot-starter-web</artifactId>
</dependency> </dependency>
<dependency> <!-- <dependency>-->
<groupId>org.springframework.boot</groupId> <!-- <groupId>org.springframework.boot</groupId>-->
<artifactId>spring-boot-starter-test</artifactId> <!-- <artifactId>spring-boot-starter-test</artifactId>-->
</dependency> <!-- </dependency>-->
<dependency> <dependency>
<groupId>org.springframework.boot</groupId> <groupId>org.springframework.boot</groupId>
@ -77,7 +77,7 @@
<artifactId>jsqlparser</artifactId> <artifactId>jsqlparser</artifactId>
</exclusion> </exclusion>
</exclusions> </exclusions>
<version>5.1.2</version> <version>5.3.1</version>
</dependency> </dependency>
<!--引入druid数据源--> <!--引入druid数据源-->
<dependency> <dependency>

View File

@ -4,6 +4,7 @@ import cn.hutool.core.bean.BeanUtil;
import cn.hutool.core.codec.Base64; import cn.hutool.core.codec.Base64;
import cn.hutool.core.collection.CollUtil; import cn.hutool.core.collection.CollUtil;
import cn.hutool.core.io.FileUtil; import cn.hutool.core.io.FileUtil;
import cn.hutool.core.io.IoUtil;
import cn.hutool.core.lang.Assert; import cn.hutool.core.lang.Assert;
import cn.hutool.core.lang.tree.Tree; import cn.hutool.core.lang.tree.Tree;
import cn.hutool.core.lang.tree.TreeNodeConfig; import cn.hutool.core.lang.tree.TreeNodeConfig;
@ -33,7 +34,6 @@ import com.electromagnetic.industry.software.manage.service.ImportPrjService;
import jakarta.annotation.Resource; import jakarta.annotation.Resource;
import jakarta.servlet.http.HttpServletResponse; import jakarta.servlet.http.HttpServletResponse;
import lombok.extern.slf4j.Slf4j; import lombok.extern.slf4j.Slf4j;
import org.mockito.internal.util.io.IOUtil;
import org.springframework.core.io.FileSystemResource; import org.springframework.core.io.FileSystemResource;
import org.springframework.core.io.InputStreamResource; import org.springframework.core.io.InputStreamResource;
import org.springframework.http.HttpHeaders; import org.springframework.http.HttpHeaders;
@ -137,7 +137,7 @@ public class ImportPrjServiceImpl extends ServiceImpl<ImportPrjInfoMapper, Impor
} catch (Exception e) { } catch (Exception e) {
throw new BizException("导入工程失败,原因 " + e.getMessage(), e); throw new BizException("导入工程失败,原因 " + e.getMessage(), e);
} finally { } finally {
IOUtil.close(zipFile); IoUtil.close(zipFile);
FileUtil.del(zipTmpPath); FileUtil.del(zipTmpPath);
} }
return true; return true;

View File

@ -32,7 +32,7 @@
<dependency> <dependency>
<groupId>org.bouncycastle</groupId> <groupId>org.bouncycastle</groupId>
<artifactId>bcprov-jdk18on</artifactId> <artifactId>bcprov-jdk18on</artifactId>
<version>1.77</version> <version>1.78</version>
</dependency> </dependency>
<dependency> <dependency>
<groupId>cn.hutool</groupId> <groupId>cn.hutool</groupId>
@ -70,6 +70,18 @@
<groupId>org.apache.poi</groupId> <groupId>org.apache.poi</groupId>
<artifactId>poi-ooxml</artifactId> <artifactId>poi-ooxml</artifactId>
<version>4.1.2</version> <version>4.1.2</version>
<exclusions>
<exclusion>
<groupId>org.apache.commons</groupId>
<artifactId>commons-compress</artifactId>
</exclusion>
</exclusions>
</dependency>
<dependency>
<groupId>org.apache.commons</groupId>
<artifactId>commons-compress</artifactId>
<version>1.26.0</version>
</dependency> </dependency>
<!--处理word文档需要的额外的jar包--> <!--处理word文档需要的额外的jar包-->