Commit d86a56df097e5be2794cd56509453849f94f1d9e

Authored by yiming
1 parent 7b28521c

设置头X-Frame-Options SAMEORIGIN

bsthLineProfiles/src/main/java/com/ruoyi/common/xss/XssFilter.java
@@ -57,6 +57,7 @@ public class XssFilter implements Filter @@ -57,6 +57,7 @@ public class XssFilter implements Filter
57 { 57 {
58 HttpServletRequest req = (HttpServletRequest) request; 58 HttpServletRequest req = (HttpServletRequest) request;
59 HttpServletResponse resp = (HttpServletResponse) response; 59 HttpServletResponse resp = (HttpServletResponse) response;
  60 + resp.addHeader("X-Frame-Options", "SAMEORIGIN");
60 if (handleExcludeURL(req, resp)) 61 if (handleExcludeURL(req, resp))
61 { 62 {
62 chain.doFilter(request, response); 63 chain.doFilter(request, response);