|
|
|
@ -34,13 +34,13 @@ public class XssHttpServletRequestWrapper extends HttpServletRequestWrapper |
|
|
|
|
if (values != null) |
|
|
|
|
{ |
|
|
|
|
int length = values.length; |
|
|
|
|
String[] escapseValues = new String[length]; |
|
|
|
|
String[] escapesValues = new String[length]; |
|
|
|
|
for (int i = 0; i < length; i++) |
|
|
|
|
{ |
|
|
|
|
// 防xss攻击和过滤前后空格
|
|
|
|
|
escapseValues[i] = EscapeUtil.clean(values[i]).trim(); |
|
|
|
|
escapesValues[i] = EscapeUtil.clean(values[i]).trim(); |
|
|
|
|
} |
|
|
|
|
return escapseValues; |
|
|
|
|
return escapesValues; |
|
|
|
|
} |
|
|
|
|
return super.getParameterValues(name); |
|
|
|
|
} |
|
|
|
|