Index: ssts-web/src/main/webapp/logon.jsp
===================================================================
diff -u -r40763 -r40811
--- ssts-web/src/main/webapp/logon.jsp (.../logon.jsp) (revision 40763)
+++ ssts-web/src/main/webapp/logon.jsp (.../logon.jsp) (revision 40811)
@@ -315,7 +315,7 @@
${message }
- 账号或密码错误!请重新输入!
+ 账号或密码错误!请重新输入!
@@ -549,8 +549,8 @@
var j_password_display = document.getElementById('j_password_display');
if('${param.redirectToTop}' == 'true'){
- if('${param.login_error}' != ''){
- top.document.location.href='${ctx}/logon.jsp?login_error=${param.login_error}';
+ if('${fn:escapeXml(param.login_error)}' != ''){
+ top.document.location.href='${ctx}/logon.jsp?login_error=${fn:escapeXml(param.login_error)}';
}else{
top.document.location.href='${ctx}/logon.jsp';
}