Skip to content

Commit eda1a45

Browse files
author
zhourenjian
committed
Fixed a bug on serializing to cross site script.
1 parent b8b205d commit eda1a45

File tree

1 file changed

+3
-3
lines changed

1 file changed

+3
-3
lines changed

sources/net.sf.j2s.ajax/ajaxrpc/net/sf/j2s/ajax/SimpleRPCHttpServlet.java

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -322,9 +322,9 @@ protected void doGet(HttpServletRequest req, HttpServletResponse resp)
322322
PrintWriter writer = resp.getWriter();
323323
writer.write("net.sf.j2s.ajax.SimpleRPCRequest.xssNotify(");
324324
writer.write("\"" + requestID + "\", \"");
325-
writer.write(serialize.replaceAll("\r", "\\r")
326-
.replaceAll("\n", "\\n")
327-
.replaceAll("\"", "\\\""));
325+
writer.write(serialize.replaceAll("\r", "\\\\r")
326+
.replaceAll("\n", "\\\\n")
327+
.replaceAll("\"", "\\\\\""));
328328
writer.write("\");");
329329
return;
330330
}

0 commit comments

Comments
 (0)