[Dashboard] 安全问题 - URL参数未校验 & 硬编码问题 #5
Loading…
x
Reference in New Issue
Block a user
No description provided.
Delete Branch "%!s()"
Deleting a branch is permanent. Although the deleted branch may continue to exist for a short time before it actually gets removed, it CANNOT be undone in most cases. Continue?
问题描述
Dashboard 前端页面
Index.vue存在以下安全问题:1. URL 参数未校验
位置:
frontend/src/views/Dashboard/Index.vue:324-326URL 参数
prisonerId未验证直接转换使用,可能导致:2. 罪犯名称硬编码
位置:
frontend/src/views/Dashboard/Index.vue:3罪犯名称应从接口数据
basicInfo.prisonerName获取,而非硬编码。修复建议
影响范围
修复优先级
P0 - 立即修复
相关信息
frontend/src/views/Dashboard/Index.vue