jetty 和 //

前言:jetty中请求路径双斜杠引起的权限绕过问题,这边简单的记录下

参考文章:https://blog.csdn.net/z69183787/article/details/84848751

public void doFilter(ServletRequest request, ServletResponse response, FilterChain filterChain) throws IOException, ServletException {
    HttpServletRequest httpRequest = (HttpServletRequest)request;
    String path = httpRequest.getRequestURI();
    if (path.indexOf("//") < 0) {
        filterChain.doFilter(request, response);
    } else {
        response.setContentType("application/json; charset=UTF-8");
        response.getWriter().write("url error,plz check");
    }
 
}
posted @ 2023-02-03 23:01  zpchcbd  阅读(66)  评论(0)    收藏  举报