Commit 8e2187db authored by zengtianlai3's avatar zengtianlai3

存储型xss

parent 29426039
......@@ -26,4 +26,10 @@ public class AuthenticationInterceptor implements HandlerInterceptor {
UserUtils.removeUser();
UserUtils.removeUri();
}
@Override
public boolean preHandle(HttpServletRequest request, HttpServletResponse response, Object handler) throws Exception {
response.setHeader("Set-Cookie","HttpOnly");
return true;
}
}
\ No newline at end of file
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment