-
Notifications
You must be signed in to change notification settings - Fork 233
merge-4.2 #960
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Merged
Merged
merge-4.2 #960
Conversation
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
* aibot base * aibot * aibot * Update BatchDownload.java * be * Update @rbv * aibot base * d * Update system-cfg.html * OnlyofficeServer * OnlyOffice * self * chat * be * be * be * ai * be * be * be * be * be * Update chat.css * be * Update chat-view.html * be * style * bd * be * style * be * AibotChatAttach * style --------- Co-authored-by: devezhao <[email protected]>
* RecordSelectorModal & ANYREF def * be: aibot * ANYREFERENCE * (Esc) close modal tabIndex="-1" * be * be * bosskey * css * Update NavBuilder.java * Update rb-components.js * feat: NTEXT_COMMON * copt form * be: entity _checkRename * 4.1.0-dev --------- Co-authored-by: devezhao <[email protected]>
* style * be * files: BatchDownload * remove: report outputType=html * Update rb-forms.js * style * feat: PDFMERGE * Update @rbv * fix chat * Update chat.js * check DocsAPI * feat: MULTISELECT_SHOWSTYLE * be * LOG * be * be
* feat: IMG/FILE sortable * be:oo * be:_isShowSelect41 * Update rb-page.css * style: md-content * be * feat: print details
* OnlyOffice * extform: 访问密码、填写提示 * be: chat * Excel 公式生效 * feat: SendNotification 邮件合并发送. SUBMAIL 不支持 * h5NoPagebreak * feat: NTEXT 格式验证 * Update blocklist.json * reference-search AdvFilter * feat:审批后禁止提交人撤回 * feat:记录转换:主记录转换为主+明细 * ee: 报表导出格式, 记录转换方式 * init N2N onFieldValueChange * 初始化脚本引擎 * Update @rbv
* Update @rbv * Update approval-design.js * Update config-comps.css * be: 异步加载apis调用次数 * 1.审批超时显示; * be var
* hotfix: _LA * hotfix: BUILD * feat:快速搜索多值查询 * 小数格式; 日期格式 * be * SHARE_TO=2000 * feat:与基础权限关系 * be: 触发器:关闭日志 * be * mbp * Update @rbv * oo-save * Update FilePreviewer.java * be * Update project-tasks.js * SQLUPDATE * Update @rbv * fix:表单回填 N2N>Ref * be:REF表单回填 * be * Update @rbv * Update README.md * Update revision-history.js * Update @rbv * fix: sop * Update view-page.css * Update @rbv * Update rb-general40.css * Update @rbv * be * fix:从excel粘贴换行问题 * Update DataListCategory38.java * opanai sdk * Update application.yml * be * feat:datalist editable * feat: 中文日期 * be: 日期 * be * be * feat:审批可修改字段只读 * Update ServerStatus.java * Update @rbv * Update @rbv * Update FilePreviewer.java * Update Field2Schema.java * be:_isDataListEditable * be * be * style * Update LocationUtils.java * rm flag * be * fix: reindexFullNameByParent delay
* feat: 列显示/菜单 置顶 * feat: trigger asyncMode * Update RobotTriggerObserver.java * og:image * fix: N2N字段回填 * style * Update Entity2Schema.java * Update @rbv * Update @rbv * Update README.md * Update system-cfg.js * Refactor variable naming and comments in entity helpers * Update role privileges UI and add i18n strings
* Update @rbv * Refactor EntityHelper forNew methods and update entity-edit UI * Update @rbv * Refactor Tomcat port detection and update CSS styles * Style select element for role privileges filter Added a CSS class and styles for the select element controlling the '与基础权限关系' filter in the role privileges UI. This improves the visual consistency and user experience. * Add Base64 file conversion utilities and tests * lang * Remove extrasAction option from form configuration * Update rb-forms.js * Add field mask privilege support to role privileges * Add toggle for showing/hiding details in print preview * Refactor DeepSeek and add aibot2 Chat implementation * Update entities.js * Refactor field schema fixes and enhance file upload config * Update field-edit.html * Update table styling * lang * Update README.md * Update README.md * Fix download headers method signature in H5AppServe * market-query * Allow wrapping in Select2 results options * Add ProTable context support to forms and controllers * Support specifying detail entity layouts in ProTable forms * Update @rbv * Update CommonsLog.java * Enhance registerAfterCommit with transaction check and logging * Refactor date addition to use NumberUtils for conversion * Add responsive overflow menu to top navigation bar
* beta1 * Improve navbar dropdown styling and auto-collapse logic * Add file rename functionality and UI enhancements * Add search functionality to entity column in role privileges * Show warning for disabled or inactive triggers * Update system-cfg.html * feat: OverDateOperator for Time * Update OshiUtils.java * Update @rbv * feat:excel列表独立字段 * Update @rbv * feat:enabledListEditable * feat:相关项-多引用字段支持 * fix
* Refactor batch update editor and improve NTEXT handling * Enable batch approval and update approval UI * Update table and treemap chart rendering options * Add editable record mode to approval flow nodes * Enable editable approval records for approvers * Allow editing details during approval process * Refactor form modal creation and extra button logic
* Add sender info to notification messages * Add MyNotification chart and update notification UI * Delete FrontjsAdminController.java * Highlight non-repeatable fields in metadata list * Add Callback2 interface and async callback support * Add calendar-based record list view * Add color field support to calendar view options * Support CLASSIFICATION type in color field options * be: 文件真删除 * Update Callback2.java * Update logback.xml * Add barcode type support for list * trigger exec cancel --------- Co-authored-by: devezhao <[email protected]>
* relateds * chart style * be: AUTODELETE,AUTOAPPROVAL * be: AUTOSHARE,AUTOASSIGN * Update @rbv * Update MetadataGetting.java * be
* feat: gitee#ICVLAB * feat: search by quickCode * Update @rbv * Reset page number and add data-pinyin to options * protocolFilterAnd * Improve chart fullscreen UI and add table cell selection * style * Update rb-advfilter.js * Update rb-page.js * Improve file management and code formatting features * Update charts.js * style * be * Enhance REP operator handling in advanced filter * Update rb-page.js * Update approval-design.js * Update DashboardController.java * Update rb-components.js * logback: FILE-ERROR * Update AdminVerfiyController.java * Improve attachment deletion and restore logic * be * Add search functionality to chart design fields * rbsystems
* Update rb-advfilter.js * Add option to hide empty fields in form details * fix:登陆 * Update AdminVerfiyController.java * feat: remarkAttachments
* be: api logs * chart filters * BIG COLOR * Add weak validation mode to record transformation * be * fix:明细布局使用 * style
* bgcolor * ExcelClipboardDataModalWithForm * be * Fix default selection logic in RbFormTag * Update @rbv * Add PatternValue interface for field format validation * ProxyUrl * Update @rbv * Add enableCopy method to _View and _DataList classes * window.__LAB_DATALIST_BORDERED42 * style * window.__LAB_SHOW_INDICATORNUM42 * style * Update rb-page.js * Update charts.css * fileRename * be:FileRename * bump libs * Add common query dropdown to reference search * Update search-icon.html
* /commons/mermaid * be: mermaid * reLocation * Enhance Table40 field DDL generation logic * Enhance advanced filter preview and logging * Fix typo and adjust chart filter/source display logic * Update @rbv
* /commons/mermaid * be: mermaid * reLocation * Enhance Table40 field DDL generation logic * Enhance advanced filter preview and logging * Fix typo and adjust chart filter/source display logic * front * Add sorting options to contacts list by name and creation date * Update @rbv * Update @rbv * Support random value assignment in aggregation triggers
| ConfigBean c = ChartManager.instance.getChart(chartid); | ||
|
|
||
| String filter = getParameter(request, "filter"); | ||
| JSONObject filterJson = JSONUtils.wellFormat(filter) ? JSON.parseObject(filter) : null; |
Check failure
Code scanning / CodeQL
Deserialization of user-controlled data Critical
Unsafe deserialization depends on a user-provided value.
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
No description provided.