|
|
@@ -98,8 +98,10 @@ func (s *ImageRecordService) GetImageRecordList(record levelRequest.ImageRecordR
|
|
|
var OrderStr string
|
|
|
// 设置有效排序key 防止sql注入
|
|
|
// 感谢 Tom4t0 提交漏洞信息
|
|
|
- orderMap := make(map[string]bool, 4)
|
|
|
+ orderMap := make(map[string]bool, 6)
|
|
|
orderMap["task_id"] = true
|
|
|
+ orderMap["use_num"] = true
|
|
|
+ orderMap["identify"] = true
|
|
|
orderMap["create_date"] = true
|
|
|
orderMap["create_time"] = true
|
|
|
orderMap["update_time"] = true
|