暂时稍微放松一下读取用户密码的安全限制,允许从来没登录过的密码明文传递

This commit is contained in:
Xu Chang 2025-01-16 11:20:11 +08:00
parent 8a23d1b0dc
commit 6c040179c8
3 changed files with 6 additions and 6 deletions

View File

@ -102,8 +102,8 @@ export class BackendRuntimeContext extends BRC {
else if (entity === 'user') {
for (const id in d[entity]) {
const userData = d[entity][id];
const { password } = userData;
if (password) {
const { password, verifyPasswordAt } = userData;
if (password && verifyPasswordAt !== null) {
userData.password = maskPassword(password);
}
}

View File

@ -105,8 +105,8 @@ class BackendRuntimeContext extends BackendRuntimeContext_1.BackendRuntimeContex
else if (entity === 'user') {
for (const id in d[entity]) {
const userData = d[entity][id];
const { password } = userData;
if (password) {
const { password, verifyPasswordAt } = userData;
if (password && verifyPasswordAt !== null) {
userData.password = (0, user_1.maskPassword)(password);
}
}

View File

@ -130,8 +130,8 @@ export abstract class BackendRuntimeContext<ED extends EntityDict & BaseEntityDi
else if (entity === 'user') {
for (const id in d[entity]) {
const userData = d[entity]![id] as Partial<EntityDict['user']['OpSchema']>;
const { password } = userData;
if (password) {
const { password, verifyPasswordAt } = userData;
if (password && verifyPasswordAt !== null) {
userData.password = maskPassword(password);
}
}