mirror of
				https://github.com/dromara/RuoYi-Vue-Plus.git
				synced 2025-11-04 08:13:44 +08:00 
			
		
		
		
	修复commons-collections引起的反序列化漏洞
This commit is contained in:
		
							
								
								
									
										12
									
								
								pom.xml
									
									
									
									
									
								
							
							
						
						
									
										12
									
								
								pom.xml
									
									
									
									
									
								
							@@ -136,8 +136,18 @@
 | 
			
		||||
                <groupId>org.apache.velocity</groupId>
 | 
			
		||||
                <artifactId>velocity</artifactId>
 | 
			
		||||
                <version>${velocity.version}</version>
 | 
			
		||||
                <exclusions>
 | 
			
		||||
                    <exclusion>
 | 
			
		||||
                        <groupId>commons-collections</groupId>
 | 
			
		||||
                        <artifactId>commons-collections</artifactId>
 | 
			
		||||
                    </exclusion>
 | 
			
		||||
                </exclusions>
 | 
			
		||||
            </dependency>
 | 
			
		||||
            <dependency>
 | 
			
		||||
                <groupId>commons-collections</groupId>
 | 
			
		||||
                <artifactId>commons-collections</artifactId>
 | 
			
		||||
                <version>3.2.2</version>
 | 
			
		||||
            </dependency>
 | 
			
		||||
	        
 | 
			
		||||
            <!-- 阿里JSON解析器 -->
 | 
			
		||||
            <dependency>
 | 
			
		||||
                <groupId>com.alibaba</groupId>
 | 
			
		||||
 
 | 
			
		||||
@@ -22,7 +22,11 @@
 | 
			
		||||
            <groupId>org.apache.velocity</groupId>
 | 
			
		||||
            <artifactId>velocity</artifactId>
 | 
			
		||||
        </dependency>
 | 
			
		||||
 | 
			
		||||
        <!--commons-collections-->
 | 
			
		||||
        <dependency>
 | 
			
		||||
            <groupId>commons-collections</groupId>
 | 
			
		||||
            <artifactId>commons-collections</artifactId>
 | 
			
		||||
        </dependency>
 | 
			
		||||
        <!-- 通用工具-->
 | 
			
		||||
        <dependency>
 | 
			
		||||
            <groupId>com.ruoyi</groupId>
 | 
			
		||||
 
 | 
			
		||||
		Reference in New Issue
	
	Block a user