- 使用 Sa-Token 管理登录、角色与权限
- JWT 模式选择:simple/mixin/stateless,结合业务场景
- 强秘钥与密钥管理,不在代码库中硬编码敏感信息
Security: fxbin/bubble
Security
docs/security.md
-
Missing validation of JWT signature in `fxbin/bubble-fireworks`GHSA-hj36-84cp-29pr published
May 21, 2021 by fxbinHigh
Learn more about advisories related to fxbin/bubble in the GitHub Advisory Database