From 885b3d6c86f650a3b26460a9a1051fb7fe73799a Mon Sep 17 00:00:00 2001
From: you <284908631@qq.com>
Date: Fri, 19 Feb 2021 22:10:37 +0800
Subject: [PATCH] =?UTF-8?q?=E5=8E=9F=E5=AF=8C=E6=96=87=E6=9C=AC=E7=BC=96?=
=?UTF-8?q?=E8=BE=91=E5=99=A8=E5=AD=98=E5=9C=A8xss=E6=B3=A8=E5=85=A5?=
=?UTF-8?q?=EF=BC=8C=E6=9A=82=E6=97=B6=E4=B8=8D=E4=BD=BF=E7=94=A8?=
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: 8bit
---
WebContent/admin/bookadd.jsp | 9 +++++++--
WebContent/admin/bookedit.jsp | 9 +++++++--
2 files changed, 14 insertions(+), 4 deletions(-)
diff --git a/WebContent/admin/bookadd.jsp b/WebContent/admin/bookadd.jsp
index 1446d3f..cf8f7c5 100644
--- a/WebContent/admin/bookadd.jsp
+++ b/WebContent/admin/bookadd.jsp
@@ -86,7 +86,7 @@
@@ -106,6 +106,10 @@ layui.use(['form', 'layedit', 'jquery'], function(){
var form = layui.form
,layer = layui.layer
,layedit = layui.layedit;
+ /**
+ * 因为富文本存在xss注入,以下代码不用了,如果需要可以开启
+ */
+ /*
var editIndex = layedit.build('LAY_demo_editor');
// 自定义验证规则
form.verify({
@@ -113,7 +117,8 @@ layui.use(['form', 'layedit', 'jquery'], function(){
content: function(value){
return layedit.sync(editIndex);
}
- })
+ })
+ */
//监听提交
form.on('submit(bookForm)', function(data){
$.ajax({
diff --git a/WebContent/admin/bookedit.jsp b/WebContent/admin/bookedit.jsp
index d37a8a7..ccc7672 100644
--- a/WebContent/admin/bookedit.jsp
+++ b/WebContent/admin/bookedit.jsp
@@ -111,7 +111,7 @@
@@ -130,6 +130,10 @@ layui.use(['form', 'layedit', 'jquery'], function(){
var form = layui.form
,layer = layui.layer
,layedit = layui.layedit;
+ /**
+ * 因为富文本存在xss注入,以下代码不用了,如果需要可以开启
+ */
+ /*
var editIndex = layedit.build('LAY_demo_editor');
// 自定义验证规则
form.verify({
@@ -137,7 +141,8 @@ layui.use(['form', 'layedit', 'jquery'], function(){
content: function(value){
return layedit.sync(editIndex);
}
- })
+ })
+ */
//监听提交
form.on('submit(formDemo)', function(data){
$.ajax({