saa99999
a17fa5a103
Fix CWE-347: JWT algorithm confusion + CWE-798: hardcoded credentials in example config ( #131 )
...
- Add HMAC algorithm verification in ParseToken to prevent JWT algorithm
confusion attacks (CWE-347). Reject tokens with non-HMAC signing methods.
- Replace hardcoded secrets in config.yml.example with empty values
(JWT key, DB password, AES key) to prevent users from deploying with
weak/known credentials (CWE-798).
2026-05-27 19:10:12 +08:00
meilin.huang
3768cef62d
feat: ai助手优化等
...
Co-authored-by: Copilot <copilot@github.com >
2026-04-28 22:37:10 +08:00
zongyangleo
1e1ded4db8
!153 fix:还原达梦驱动,修复数据库多级 ssh 跳 bug
...
* fix:还原达梦驱动,修复数据库多级 ssh 跳 bug
* feat: 支持milvus操作
2026-04-27 05:13:40 +00:00
meilin.huang
f207517d35
feat: ai助手优化、请求库优化
2026-04-21 17:22:21 +08:00
meilin.huang
6f5069567e
feat: 初步新增ai助手
2026-04-15 12:47:10 +08:00
zongyangleo
8ba87c1895
!149 fix:连接池修复和guacd自动重连
...
* 连接池修复和guacd自动重连
2026-04-07 13:29:31 +00:00
meilin.huang
414e4b0b36
refactor: 代码优化&依赖升级
2026-03-18 20:58:41 +08:00
meilin.huang
84ab496308
refactor: 前端生产路由改为history、依赖版本升级
2026-03-05 20:31:57 +08:00
meilin.huang
f91b89f38a
refactor: 注释优化
2026-02-10 18:12:41 +08:00
meilin.huang
9bb9861d88
refactor: 参数绑定等优化
2026-02-07 13:12:07 +08:00
meilin.huang
403d1c45e5
refactor: sshtunnel等
2026-02-01 13:35:23 +08:00
meilin.huang
400db0402a
refactor: 包优化&其他问题修复
2026-01-25 14:16:16 +08:00
meilin.huang
f0de65b7ce
refactor: 协程启动优化、tagviews调整
2026-01-20 19:45:46 +08:00
meilin.huang
0472c5101f
feat: 数据库迁移至文件支持zip格式、go启动协程时panic优化、菜单资源优化
2026-01-18 20:40:11 +08:00
meilin.huang
185cd6f82b
fix: postgres导出调整等
2026-01-14 20:38:06 +08:00
meilin.huang
a18417ab26
fix: 问题修复
2026-01-05 20:07:17 +08:00
meilin.huang
5598ddf93c
feat: 工单流程新增ai任务,支持退回、数据导出支持excel、其他优化等
2025-12-08 20:50:16 +08:00
meilin.huang
3017460cc7
refactor: 去除无用组件等
2025-11-16 09:11:09 +08:00
fudawei
e6c89fad1b
feat(es):增加ES实例中对HTTPS协议的支持,默认证书免校验
2025-10-23 15:29:27 +08:00
meilin.huang
dba19b1e66
fix: editor提示被遮挡问题修复等
2025-10-18 11:21:33 +08:00
meilin.huang
4ac57cd140
refactor: 标签不可移动,资源选择优化等
2025-10-07 15:41:19 +08:00
meilin.huang
c4d52ce47a
feat: 资源操作新增右键菜单操作等
2025-09-17 21:23:12 +08:00
meilin.huang
82fd97e06a
fix: file文件缺失
2025-08-08 12:55:10 +08:00
meilin.huang
6ad6c69660
refactor: 消息模块重构,infra包路径简写等
2025-07-27 21:02:48 +08:00
meilin.huang
f7480f3bac
refactor: cast包替换
2025-06-27 12:17:45 +08:00
meilin.huang
54d3a5b368
fix: sql执行记录根据关键词搜索问题修复等
2025-06-22 10:52:06 +08:00
meilin.huang
cc66fcddf5
refactor: 动态路由调整&分隔面板使用element自带组件
2025-06-09 21:18:55 +08:00
meilin.huang
aac4c2b42b
fix: 机器计划任务、数据库迁移任务初始化问题修复
2025-06-01 20:39:54 +08:00
meilin.huang
7a17042276
refactor: pool get options支持不创建连接
2025-05-29 20:24:48 +08:00
zongyangleo
e273ade0b0
fix: 连接池修复
2025-05-29 11:38:29 +08:00
meilin.huang
bcaa4563ac
fix: ssh tunnel检测导致死锁问题调整
2025-05-27 22:56:54 +08:00
meilin.huang
e0c01d4561
fix: 移除隧道连接时检测是否正在使用
2025-05-26 22:33:51 +08:00
meilin.huang
d6280ea280
refactor: 使用泛型重构参数绑定等
2025-05-24 16:22:54 +08:00
meilin.huang
666b191b6c
fix: some issue
2025-05-23 17:26:12 +08:00
meilin.huang
778cb7f4de
reafctor: pool
2025-05-22 23:29:50 +08:00
zongyangleo
142bbd265d
!134 feat: 新增支持es和连接池
...
* feat: 各连接,支持连接池
* feat:支持es
2025-05-21 04:42:30 +00:00
meilin.huang
f676ec9e7b
feat: flow design & page query refactor
2025-05-20 21:04:47 +08:00
meilin.huang
2170509d92
refactor: code optimization
2025-04-23 20:36:32 +08:00
meilin.huang
abd2b4bac0
refactor: 引入tailwind css & 后端部分非公共包位置调整
2025-04-18 22:07:37 +08:00
meilin.huang
585cbbed23
fix: i18n特殊字符调整
2025-04-16 12:09:55 +08:00
meilin.huang
1b40d345eb
feat: message notify
2025-04-15 21:42:31 +08:00
meilin.huang
bc21ba7c1e
fix: some issue
2025-03-11 12:42:20 +08:00
meilin.huang
547e31eae6
refactor: pacakge version upgrade
2025-02-27 19:40:31 +08:00
meilin.huang
aa393590b2
feat: 系统升级支持数据库自动迁移,避免手动执行升级脚本
2025-02-13 21:11:23 +08:00
meilin.huang
30ea36a722
feat: 机器新增支持加密方法等
2025-01-18 13:43:01 +08:00
meilin.huang
8d24c2a4fa
refactor: 数据同步优化 & 标签树支持双击展开节点 & mysql支持with语句
2025-01-10 12:05:00 +08:00
zongyangleo
3f6fb5afef
!129 fix: db 相关bug
...
* fix: db 相关bug
2024-12-26 04:11:28 +00:00
meilin.huang
68f553f4b0
refactor: remove router、ioc is adjusted to inject by type
2024-12-16 23:29:18 +08:00
meilin.huang
7f2a49ba3c
fix: 机器文件内容写入导致内容清空、feat: ioc支持根据类型注入
2024-12-13 12:15:24 +08:00
meilin.huang
e56788af3e
refactor: dbm
2024-12-08 13:04:23 +08:00