-1day
-1day
### 问题描述:  这里会匹配`org.dom4j.io.SAXReader#read`包括下面的8个,仅方法参数不一样 1. public Document read(File file) throws DocumentException 2. public Document read(URL url) throws DocumentException 3. public Document read(String systemId) throws DocumentException 4. public Document read(InputStream in)...
### 复现环境 + jdk 1.8 + springboot(2.7.4)+内嵌jetty(9.4.49.v20220914) + open-rasp 1.3.7 ### 问题描述: 有一个接口通过http请求可以触发命令执行: ``` @PostMapping(value = "/json/unixProcess.do", consumes = APPLICATION_JSON_VALUE) public Map jsonUnixProcess(@RequestBody Map map) throws Exception { return unixProcess((String)...