Skip to content

[Bug] There is a risk of sourcemap file leakage #3204

Closed
@zhainanshidai

Description

@zhainanshidai

Contact Information

No response

MaxKB Version

1.10.8

Problem Description

/static/rest_framework/css/bootstrap.min.css.map

/static/drf-yasg/swagger-ui-dist/swagger-ui.css.map
存在sourcemap文件泄露风险

  1. 对于vue,需修改配置关闭SourceMap,项目路径下更改src/config/index.js中的参数参照如下:productionSourceMap:false

  2. 对于react-cli,需修改配置关闭SourceMap,在配置 nodejs 运行时候的环境变量,将传入 GENERATE_SOURCEMAP 值为 false;或在项目路径下更改/webpack.config.js中的参数参照如下:const shouldUseSourceMap = false;

Steps to Reproduce

/static/rest_framework/css/bootstrap.min.css.map

/static/drf-yasg/swagger-ui-dist/swagger-ui.css.map
存在sourcemap文件泄露风险

  1. 对于vue,需修改配置关闭SourceMap,项目路径下更改src/config/index.js中的参数参照如下:productionSourceMap:false

  2. 对于react-cli,需修改配置关闭SourceMap,在配置 nodejs 运行时候的环境变量,将传入 GENERATE_SOURCEMAP 值为 false;或在项目路径下更改/webpack.config.js中的参数参照如下:const shouldUseSourceMap = false;

The expected correct result

No response

Related log output

Additional Information

No response

Metadata

Metadata

Assignees

Labels

No labels
No labels

Type

No type

Projects

No projects

Milestone

No milestone

Relationships

None yet

Development

No branches or pull requests

Issue actions