From fdf7e652a58601817fc5402f828305417ef39a67 Mon Sep 17 00:00:00 2001 From: whyclxw <810412026@qq.com> Date: 星期四, 05 六月 2025 15:17:54 +0800 Subject: [PATCH] Access-Control-Expose-Headers导出暴漏文件名 --- src/main/java/com/whyc/filter/CrossDomainFilter.java | 2 +- 1 files changed, 1 insertions(+), 1 deletions(-) diff --git a/src/main/java/com/whyc/filter/CrossDomainFilter.java b/src/main/java/com/whyc/filter/CrossDomainFilter.java index ada0dd0..f0f0871 100644 --- a/src/main/java/com/whyc/filter/CrossDomainFilter.java +++ b/src/main/java/com/whyc/filter/CrossDomainFilter.java @@ -74,7 +74,7 @@ resp.setHeader("X-XSS-Protection","1; mode=block"); resp.setHeader("X-Download-Options","noopen"); resp.setHeader("Strict-Transport-Security","max-age=63072000; includeSubdomains; preload"); - + resp.setHeader("Access-Control-Expose-Headers", "Content-Disposition"); //鍗曢〉闈㈠簲鐢�,鍙厑璁镐竴涓〉闈ndex.html String servletPath = req.getServletPath(); if(servletPath.contains(".html")){ -- Gitblit v1.9.1