78 Commits

Author SHA1 Message Date
MaxKey
c2f559cae3 增加源代码版本声明 2024-05-04 14:43:39 +08:00
MaxKey
4d5b20baa9 jar升级和代码优化 2024-01-27 11:15:45 +08:00
MaxKey
a1213a7539 代码优化 2024-01-13 21:48:32 +08:00
MaxKey
f7b85b5834 DesedeEncoder 2024-01-02 17:15:26 +08:00
MaxKey
e62b2ab82a org.dromara.maxkey.ldap 2023-11-25 11:25:55 +08:00
MaxKey
5eeddc6b0e dromara. 2023-08-17 10:29:13 +08:00
MaxKey
5e7520d08e 调整获取accessToken次序 2023-08-15 14:30:28 +08:00
MaxKey
d2500690e2 jdk 17 2023-08-15 11:58:38 +08:00
MaxKey
7ebf4a57f3 org.maxkey -> org.dromara.maxkey 2023-08-15 09:59:22 +08:00
MaxKey
32462ebeef password Test 2023-07-13 08:03:32 +08:00
MaxKey
ae6e7fef81 Update RequestTokenUtils.java 2023-03-21 17:28:11 +08:00
MaxKey
b34063de10 AuthorizationHeaderCredential rename to AuthorizationHeader 2023-03-07 10:05:18 +08:00
MaxKey
39673103fb AuthorizationHeaderUtils 优化 2023-03-03 11:07:52 +08:00
MaxKey
c63f6f96d7 RequestTokenUtils 2023-03-03 11:07:21 +08:00
MaxKey
ba9790c771 OpenID Connect metadata 2023-02-15 10:04:47 +08:00
MaxKey
3ab0551f2f prettyJson use Gson , htmlEscaping 2023-02-14 16:01:04 +08:00
MaxKey
6caa5a02f4 Update JWKSetKeyStore.java 2023-02-02 11:51:22 +08:00
MaxKey
7367666adc synchronizer jdbc & optimize 2022-12-04 18:37:38 +08:00
Jonathan Leitschuh
5112a787ad
vuln-fix: Temporary File Information Disclosure
This fixes temporary file information disclosure vulnerability due to the use
of the vulnerable `File.createTempFile()` method. The vulnerability is fixed by
using the `Files.createTempFile()` method which sets the correct posix permissions.

Weakness: CWE-377: Insecure Temporary File
Severity: Medium
CVSSS: 5.5
Detection: CodeQL & OpenRewrite (https://public.moderne.io/recipes/org.openrewrite.java.security.SecureTempFileCreation)

Reported-by: Jonathan Leitschuh <Jonathan.Leitschuh@gmail.com>
Signed-off-by: Jonathan Leitschuh <Jonathan.Leitschuh@gmail.com>

Bug-tracker: https://github.com/JLLeitschuh/security-research/issues/18


Co-authored-by: Moderne <team@moderne.io>
2022-11-19 02:04:21 +00:00
MaxKey
3297ee30aa Pretty SQL , Json , XML optimize 2022-11-08 16:02:54 +08:00
MaxKey
31ebb5c85a synchronizer-jdbc 2022-10-16 17:23:34 +08:00
MaxKey
d22358bb98 JsonUtils rename method name 2022-09-18 10:41:43 +08:00
MaxKey
8e5fc93d13 new version provision 2022-09-13 11:09:18 +08:00
MaxKey
117f4b6404 HMAC512 2022-08-30 16:09:30 +08:00
MaxKey
f4ac3a9af2 optimize ObjectTransformer 2022-08-27 18:15:44 +08:00
MaxKey
71d53daa90 login fail message 2022-07-05 15:37:39 +08:00
MaxKey
3e080d568f user accout 2022-05-03 11:23:52 +08:00
MaxKey
586e473e48 sso 2022-04-20 17:06:18 +08:00
MaxKey
5e4923d6b4 mybatis-jpa-extra 2022-04-14 22:09:27 +08:00
MaxKey
786ca40b3c 220413 2022-04-13 18:47:33 +08:00
MaxKey
0586a2a559 change 2022-04-03 08:34:09 +08:00
MaxKey
374e16bf5a 3.4.0 with Angular 2022-03-28 22:00:46 +08:00
MaxKey
7944b16bd1 LDAP同步和登录问题
decoder credentials
2022-03-03 20:35:19 +08:00
MaxKey
545e2c1a96 OIDC接口优化 #I4VFYD 2022-02-27 21:32:36 +08:00
MaxKey
6578897137 qiye.163.com 2022-02-27 15:34:40 +08:00
MaxKey
feabbcdd97 RSAUtils optimize 2022-02-27 10:23:58 +08:00
MaxKey
61673b4b07 optimize 2022-02-26 19:40:57 +08:00
MaxKey
1faaefb870 RSAUtils 注释
RSAUtils 注释
springVersion               =5.3.16
version                         =3.3.3
2022-02-21 15:21:44 +08:00
MaxKey
d53cc127e3 RSAUtils END KEY 2022-02-21 11:22:59 +08:00
MaxKey
6caa74b0f9 HttpEncoder StreamUtils Preconditions 2022-02-20 21:42:43 +08:00
MaxKey
ee8b7536e1 Metadata PEM support 2022-02-18 15:21:29 +08:00
MaxKey
ade641922c Jwt Service optimize 2022-02-14 09:47:01 +08:00
MaxKey
b5decd3a6a FormBased password 2022-02-13 17:55:15 +08:00
MaxKey
120f8b3d8e Optimize 2022-02-13 15:08:08 +08:00
MaxKey
e0a274fada mv to repository 2022-01-13 10:46:38 +08:00
MaxKey
1140dc1d41 slf4j 2021-12-25 09:45:54 +08:00
MaxKey
283c4a5bb6 mybatis-jpa-extra-2.7 2021-12-24 19:11:40 +08:00
MaxKey
df81c2ed68 PasswordReciprocal optimize 2021-12-10 22:35:12 +08:00
MaxKey
7270a1fc1c ExcelImport 2021-11-17 09:35:55 +08:00
MaxKey
ba9b6ff9f9 ExcelImport 2021-11-16 21:35:53 +08:00