[Bug] post/admin/api/workspace/default/tool接口导入一个.tool文件,然后抓包工具里修改文件后缀为.php,.php也能导入,看来maxkb后端没有文件格式校验 #6835
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
| name: Issue Translator | |
| on: | |
| issue_comment: | |
| types: [created] | |
| issues: | |
| types: [opened] | |
| jobs: | |
| build: | |
| runs-on: ubuntu-latest | |
| steps: | |
| - uses: usthe/[email protected] | |
| with: | |
| IS_MODIFY_TITLE: true | |
| BOT_GITHUB_TOKEN: ${{ secrets.FIT2CLOUDRD_LLM_CODE_REVIEW_TOKEN }} |