Giter Site home page Giter Site logo

wujun728 / jun_springboot_vue Goto Github PK

View Code? Open in Web Editor NEW
9.0 1.0 7.0 5.06 MB

jun_ssm_springboot基于SpringBoot家族的SSM常用组件的全面整合(含SpringBoot、MybatisPlus、AdminLTE、Thmeeaf组件)的基础开发框架,目前包括RBAC、上传下载、基础CRUD功能,非常便捷的二次开发框架(不喜欢前端AdminLTE的,可以挪除,后面补充对应的前端框架,原生支持前后端分离,Shiro+JWT)

License: MIT License

Batchfile 0.02% Java 9.60% JavaScript 82.88% CSS 0.64% HTML 0.44% Less 0.02% Vue 6.20% SCSS 0.18% Shell 0.02%
spring-mvc mybatis spring spring-email thymeleaf shiro springboot spring-boot java jpa

jun_springboot_vue's People

Contributors

wujun728 avatar

Stargazers

 avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar  avatar

Watchers

 avatar

jun_springboot_vue's Issues

同学,您这个项目引入了98个开源组件,存在23个漏洞,辛苦升级一下

检测到 wujun728/jun_springboot_admin_vue 一共引入了98个开源组件,存在23个漏洞

漏洞标题:Vmware VMware Spring Security 权限许可和访问控制问题漏洞
缺陷组件:org.springframework.security:[email protected]
漏洞编号:CVE-2021-22112
漏洞描述:Vmware VMware Spring Security是美国威睿(Vmware)公司的一套为基于Spring的应用程序提供说明性安全保护的安全框架。
VMware Spring Security 中存在权限许可和访问控制问题漏洞。该漏洞源于攻击者可以通过Spring Security的多个SecurityContext更改绕过限制,以提升其权限。以下产品及版本受到影响:Spring Security 5.4.0 至 5.4.3 版本, Spring Security 5.3.0.RELEASE 至 5.3.7.RELEASE 版本, Spring Security 5.2.0.RELEASE 至 5.2.8.RELEASE 版本。
影响范围:(∞, 5.2.9.RELEASE)
最小修复版本:5.2.9.RELEASE
缺陷组件引入路径:com.reading:[email protected]>org.springframework.boot:[email protected]>org.springframework.security:[email protected]>org.springframework.security:[email protected]

另外还有23个漏洞,详细报告:https://mofeisec.com/jr?p=a9cab0

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.