perf(X-Pack): 定时报告下载附件错误

This commit is contained in:
fit2cloud-chenyw
2025-03-17 17:21:11 +08:00
committed by xuwei-fit2cloud
parent 738c169609
commit 1f29ce93b6

View File

@@ -103,7 +103,7 @@ public class WhitelistUtils {
}
private static void invalidUrl(String requestURI) {
if (requestURI.contains("./") || requestURI.contains("%") || (requestURI.contains(";") && !requestURI.contains("?"))) {
if (requestURI.contains("./") || requestURI.contains(".%") || requestURI.toLowerCase().contains("%2e") || (requestURI.contains(";") && !requestURI.contains("?"))) {
DEException.throwException(INTERFACE_ADDRESS_INVALID.code(), String.format("%s [%s]", INTERFACE_ADDRESS_INVALID.message(), requestURI));
}
}