Skip to content

[Bug] waf错误拦截halo后台请求 #11902

@mufengyian

Description

@mufengyian

Contact Information

No response

1Panel Version

v2.1.0

Problem Description

在halo后台编辑“页面”时,点击左侧导航栏任意选项都会提示“请求携带恶意参数 已被拦截”,waf后台显示xss攻击,url为/apis/api.console.halo.run/v1alpha1/singlepages/373a5f79-f44f-441a-9df1-85a4f553ece8/content,命中规则xss

Steps to Reproduce

开启1p专业版waf的情况下在halo后台编辑“页面”时,点击左侧导航栏任意选项都会提示“请求携带恶意参数 已被拦截”,waf后台显示xss攻击,url为/apis/api.console.halo.run/v1alpha1/singlepages/373a5f79-f44f-441a-9df1-85a4f553ece8/content,命中规则xss

The expected correct result

No response

Related log output

Additional Information

No response

Metadata

Metadata

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions