Commit 1aea815eb95c25b7e2cb1312be1a7de07526274a

Authored by zhangdaiscott
1 parent 68b1ebc5

升级Shiro版本,解决安全漏洞提示 #3498

jeecg-boot/jeecg-boot-base/jeecg-boot-base-core/src/main/java/org/jeecg/config/shiro/ShiroConfig.java
... ... @@ -59,7 +59,7 @@ public class ShiroConfig {
59 59 * 2、当设置多个过滤器时,全部验证通过,才视为通过
60 60 * 3、部分过滤器可指定参数,如perms,roles
61 61 */
62   - @Bean("shiroFilter")
  62 + @Bean("shiroFilterFactoryBean")
63 63 public ShiroFilterFactoryBean shiroFilter(SecurityManager securityManager) {
64 64 CustomShiroFilterFactoryBean shiroFilterFactoryBean = new CustomShiroFilterFactoryBean();
65 65 shiroFilterFactoryBean.setSecurityManager(securityManager);
... ...
jeecg-boot/pom.xml
... ... @@ -38,7 +38,7 @@
38 38 <commons.version>2.6</commons.version>
39 39 <aliyun-java-sdk-dysmsapi.version>2.1.0</aliyun-java-sdk-dysmsapi.version>
40 40 <aliyun.oss.version>3.11.2</aliyun.oss.version>
41   - <shiro.version>1.7.1</shiro.version>
  41 + <shiro.version>1.8.0</shiro.version>
42 42 <java-jwt.version>3.11.0</java-jwt.version>
43 43 <shiro-redis.version>3.1.0</shiro-redis.version>
44 44 <codegenerate.version>1.3.7</codegenerate.version>
... ...