Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

济南市场部随意删除菜单信息 #519

Open
yanzhou-felicity opened this issue Jul 20, 2023 · 0 comments
Open

济南市场部随意删除菜单信息 #519

yanzhou-felicity opened this issue Jul 20, 2023 · 0 comments

Comments

@yanzhou-felicity
Copy link

济南综合部这个普通用户可以随意删除管理员用户创建的菜单。
The ordinary user "济南综合部" can freely delete menus created by administrator users.

问题代码发生在com.thinkgem.jeesite.modules.sys.web.MenuController中的delete方法中
The problematic code occurs in the 'delete' method of the 'MenuController' class in com.thinkgem.jeesite.modules.sys.web.

这里登录济南综合部,删除“日志查询”这个字段
Here, logging in as the ordinary user "济南综合部," I will delete the "日志查询" (Log Query) field.
图片1

删除成功:
Deletion successful.
图片2

问题代码截图:
Screenshot of problem code
图片3

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant