【漏洞修复】由于自增id可猜测,需避免别有用心之人删除别人的购物车 update /yudao/module/trade/service/cart/CartServiceImpl.java.

Signed-off-by: 山野羡民 <liyujiang_tk@yeah.net>
master
山野羡民 10 months ago committed by Gitee
parent 9faee918f9
commit fb436ac189
No known key found for this signature in database
GPG Key ID: 173E9B9CA92EEF8F
  1. 2
      yudao-module-mall/yudao-module-trade-biz/src/main/java/cn/iocoder/yudao/module/trade/service/cart/CartServiceImpl.java

@ -121,7 +121,7 @@ public class CartServiceImpl implements CartService {
}
// 批量标记删除
cartMapper.deleteBatchIds(ids);
cartMapper.deleteByIds(carts.stream().map(CartDO::getId).toList());
}
@Override

Loading…
Cancel
Save