浏览代码

fix 修复fastjson漏洞,将版本从1.2.58提升至当前最新的版本2.0.41

DYH2020 1 年之前
父节点
当前提交
3a71dadbed
共有 3 个文件被更改,包括 13 次插入2 次删除
  1. 11 0
      onemini-alipay-sdk/pom.xml
  2. 1 1
      onemini-hospital-empty/pom.xml
  3. 1 1
      onemini-hospital-sdk/pom.xml

+ 11 - 0
onemini-alipay-sdk/pom.xml

@@ -25,6 +25,17 @@
             <groupId>com.alipay.sdk</groupId>
             <artifactId>alipay-sdk-java</artifactId>
             <version>4.11.0.ALL</version>
+            <exclusions>
+                <exclusion>
+                    <artifactId>fastjson</artifactId>
+                    <groupId>com.alibaba</groupId>
+                </exclusion>
+            </exclusions>
+        </dependency>
+        <dependency>
+            <groupId>com.alibaba</groupId>
+            <artifactId>fastjson</artifactId>
+            <version>2.0.41</version>
         </dependency>
         <dependency>
             <groupId>org.springframework</groupId>

+ 1 - 1
onemini-hospital-empty/pom.xml

@@ -72,7 +72,7 @@
         <dependency>
             <groupId>com.alibaba</groupId>
             <artifactId>fastjson</artifactId>
-            <version>1.2.58</version>
+            <version>2.0.41</version>
         </dependency>
 
         <dependency>

+ 1 - 1
onemini-hospital-sdk/pom.xml

@@ -49,7 +49,7 @@
         <dependency>
             <groupId>com.alibaba</groupId>
             <artifactId>fastjson</artifactId>
-            <version>1.2.50</version>
+            <version>2.0.41</version>
             <scope>compile</scope>
         </dependency>
         <dependency>