From 30634f57fa9899bd39b2350c1b1f8331f6daec3a Mon Sep 17 00:00:00 2001 From: Medicean Date: Wed, 30 Oct 2019 15:52:01 +0800 Subject: [PATCH] release v2.1.7 --- CHANGELOG.md | 17 +++++++++++++++++ README.md | 2 +- README_CN.md | 2 +- package-lock.json | 2 +- package.json | 2 +- 5 files changed, 21 insertions(+), 4 deletions(-) diff --git a/CHANGELOG.md b/CHANGELOG.md index fbe6ebb3..ac925942 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -2,6 +2,23 @@ > 有空会补补BUG、添添新功能。 > 同时也欢迎大家的参与!感谢各位朋友的支持! .TAT. +## 2019/10/30 `v(2.1.7)` + +### 安全更新 + +* fix #222 感谢 @9tail123 +* **重要**: 增加全局 html 转义, 在每次响应后强制进行 html 转义, 避免过滤时漏掉的问题 + + > 此更新会影响大部分插件的使用, 请及时更新插件或重装插件 + > + > 如果在使用当中发现二次转义的情况, 请报告 issue + +* 新增「报告漏洞」链接, 可在「关于程序」页中看到, 也可点下面的链接直达 + + https://forms.gle/HrUMxedsyREeXw4R9 + + > 如在后续发现漏洞, 请以该方式进行提交, 待修复后再公开 + ## 2019/09/17 `v(2.1.6)` ### 后端模块 diff --git a/README.md b/README.md index 69a2fcf5..c5ee75a5 100644 --- a/README.md +++ b/README.md @@ -1,4 +1,4 @@ -# AntSword [![release](https://img.shields.io/badge/release-v2.1.6-blue.svg?style=flat-square)][url-release] +# AntSword [![release](https://img.shields.io/badge/release-v2.1.7-blue.svg?style=flat-square)][url-release] > AntSword in your hands, no worries in your mind! diff --git a/README_CN.md b/README_CN.md index 19f5d1ae..320785e7 100644 --- a/README_CN.md +++ b/README_CN.md @@ -1,4 +1,4 @@ -# 中国蚁剑 [![release](https://img.shields.io/badge/release-v2.1.6-blue.svg?style=flat-square)][url-release] +# 中国蚁剑 [![release](https://img.shields.io/badge/release-v2.1.7-blue.svg?style=flat-square)][url-release] > 一剑在手,纵横无忧! diff --git a/package-lock.json b/package-lock.json index 39383c9d..bab46e5a 100644 --- a/package-lock.json +++ b/package-lock.json @@ -1,6 +1,6 @@ { "name": "antsword", - "version": "2.1.6", + "version": "2.1.7", "lockfileVersion": 1, "requires": true, "dependencies": { diff --git a/package.json b/package.json index ef66980d..280612ea 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "antsword", - "version": "2.1.6", + "version": "2.1.7", "description": "中国蚁剑是一款跨平台的开源网站管理工具", "main": "app.js", "dependencies": {