From d4297a753f8f7f2e912c7607b4533da6560a8d13 Mon Sep 17 00:00:00 2001 From: ascyz Date: Tue, 7 Mar 2023 11:20:50 +0800 Subject: [PATCH] Update build.gradle MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit 升级swagger-ui版本,避免swagger页面由查询参数控制的DOM XSS漏洞 --- springfox-swagger-ui/build.gradle | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/springfox-swagger-ui/build.gradle b/springfox-swagger-ui/build.gradle index 88cfcd27073..562beb29e30 100644 --- a/springfox-swagger-ui/build.gradle +++ b/springfox-swagger-ui/build.gradle @@ -21,7 +21,7 @@ plugins { } ext { - swaggerUiVersion = '3.26.2' + swaggerUiVersion = '3.38.0' swaggerUiDist = "build/libs/swagger-ui-dist.zip" swaggerUiExplodedDir = "swagger-ui-${swaggerUiVersion}/dist/" downloadUrl = "https://github.com/swagger-api/swagger-ui/archive/v${swaggerUiVersion}.zip"