Commit a41a3151 authored by guangjing.gao's avatar guangjing.gao

校验token内租户ID和传值租户ID是否一致

parent 2a1a03fe
......@@ -461,7 +461,8 @@ public class UserController implements IBaseController {
User user = sessionStruct.getValues().getUser();
//校验非羊小咩租户
if (!tenantId.equals(TenantUtil.TENANT_DEFAULT)) {
if (!TenantUtil.validationTenantIdIsNullOrZero(tenantId)) {
Integer sessionTenantId = sessionStruct.getValues().getLoginProperties().getTenantId();
if (sessionTenantId.equals(tenantId)) {
user = tenantService.getTenantUser(user, tenantId);
if (user == null) {
return JsonResult.buildSuccessResult(null, result);
......
Markdown is supported
0% or
You are about to add 0 people to the discussion. Proceed with caution.
Finish editing this message first!
Please register or to comment