Explorar o código

Merge branch 'v5.1.0dev' into v5.0.0dev

liaofei %!s(int64=2) %!d(string=hai) anos
pai
achega
783b84ffc9
Modificáronse 1 ficheiros con 3 adicións e 0 borrados
  1. 3 0
      crmeb/app/adminapi/controller/Login.php

+ 3 - 0
crmeb/app/adminapi/controller/Login.php

@@ -105,6 +105,9 @@ class Login extends AuthController
         }
 
         try {
+            if (strlen(trim($password)) > 500) {
+                return app('json')->fail(400762);
+            }
             $password = $rsa->privateDecrypt($password);
         } catch (\Throwable $e) {
             return app('json')->fail($e->getMessage());