Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

安全问题:数据接口需要在后台做验证,确定url访问时的用户身份 #303

Open
qqzxingchen opened this issue Nov 3, 2016 · 0 comments

Comments

@qqzxingchen
Copy link
Contributor

关于在页面内部,通过ajax请求来从后台获取数据的接口,需要在后台进行验证,确认当前用户已登陆并拥有访问权限,避免被人直接使用访问 url 的方式来获取敏感数据

@qqzxingchen qqzxingchen self-assigned this Nov 3, 2016
@qqzxingchen qqzxingchen removed their assignment Feb 9, 2017
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant