diff --git a/CHANGELOG.md b/CHANGELOG.md index 6009aab0..d4e77373 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -2,6 +2,10 @@ > 有空会补补BUG、添添新功能。 > 同时也欢迎大家的参与!感谢各位朋友的支持! .TAT. +## 2019/12/04 `v(2.1.8.1)` + +* Fix ViewSite security issue thx @imagemlt + ## 2019/12/04 `v(2.1.8)` ### 核心 diff --git a/README.md b/README.md index 843d0b83..da004c91 100644 --- a/README.md +++ b/README.md @@ -1,4 +1,4 @@ -# AntSword [![release](https://img.shields.io/badge/release-v2.1.8-blue.svg?style=flat-square)][url-release] +# AntSword [![release](https://img.shields.io/badge/release-v2.1.8.1-blue.svg?style=flat-square)][url-release] > AntSword in your hands, no worries in your mind! diff --git a/README_CN.md b/README_CN.md index 8f028701..932489cd 100644 --- a/README_CN.md +++ b/README_CN.md @@ -1,4 +1,4 @@ -# 中国蚁剑 [![release](https://img.shields.io/badge/release-v2.1.8-blue.svg?style=flat-square)][url-release] +# 中国蚁剑 [![release](https://img.shields.io/badge/release-v2.1.8.1-blue.svg?style=flat-square)][url-release] > 一剑在手,纵横无忧! diff --git a/package-lock.json b/package-lock.json index 04a6b4b5..73f18879 100644 --- a/package-lock.json +++ b/package-lock.json @@ -1,6 +1,6 @@ { "name": "antsword", - "version": "2.1.8", + "version": "2.1.8.1", "lockfileVersion": 1, "requires": true, "dependencies": { diff --git a/package.json b/package.json index bf9c152b..987f6109 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "antsword", - "version": "2.1.8", + "version": "2.1.8.1", "description": "中国蚁剑是一款跨平台的开源网站管理工具", "main": "app.js", "dependencies": { diff --git a/source/modules/viewsite/index.js b/source/modules/viewsite/index.js index d0119504..dee78de0 100644 --- a/source/modules/viewsite/index.js +++ b/source/modules/viewsite/index.js @@ -217,6 +217,10 @@ class ViewSite { show: false, autoHideMenuBar: true, webPreferences: { + sandbox: true, + contextIsolation: true, + allowpopups: false, + allowRunningInsecureContent: false, nodeIntegration: false }, title: url