Snailclimb / spring-security-jwt-guide

从零入门 !Spring Security With JWT(含权限验证)后端部分代码。
1.37k stars 437 forks source link

User实体里的updateFrom方法未给密码加密导致更新后以明文存储密码 #19

Closed Chennyh closed 4 years ago

Chennyh commented 4 years ago
    public void updateFrom(UserUpdateRequest userUpdateRequest) {
        if (Objects.nonNull(userUpdateRequest.getFullName())) {
            this.setFullName(userUpdateRequest.getFullName());
        }
        if (Objects.nonNull(userUpdateRequest.getPassword())) {
            this.setPassword(userUpdateRequest.getPassword());
        }
        if (Objects.nonNull(userUpdateRequest.getEnabled())) {
            this.setEnabled(userUpdateRequest.getEnabled());
        }
    }
Snailclimb commented 4 years ago
    public void updateFrom(UserUpdateRequest userUpdateRequest) {
        if (Objects.nonNull(userUpdateRequest.getFullName())) {
            this.setFullName(userUpdateRequest.getFullName());
        }
        if (Objects.nonNull(userUpdateRequest.getPassword())) {
            this.setPassword(userUpdateRequest.getPassword());
        }
        if (Objects.nonNull(userUpdateRequest.getEnabled())) {
            this.setEnabled(userUpdateRequest.getEnabled());
        }
    }

已经修改。