From 711128e4730186c68d31dd657b512f7c2580acfd Mon Sep 17 00:00:00 2001 From: Saurav Mishra Date: Wed, 14 Jan 2026 10:59:01 +0530 Subject: [PATCH] fix vulnerabilitie code --- .../BulkRegistrationController.java | 18 ------------------ .../BulkRegistrationServiceImpl.java | 2 -- 2 files changed, 20 deletions(-) diff --git a/src/main/java/com/iemr/admin/controller/bulkRegistration/BulkRegistrationController.java b/src/main/java/com/iemr/admin/controller/bulkRegistration/BulkRegistrationController.java index 4832b53..2ca9134 100644 --- a/src/main/java/com/iemr/admin/controller/bulkRegistration/BulkRegistrationController.java +++ b/src/main/java/com/iemr/admin/controller/bulkRegistration/BulkRegistrationController.java @@ -44,25 +44,7 @@ public class BulkRegistrationController { public ResponseEntity> registerBulkUser(@RequestBody String m_user, @RequestHeader String authorization, @RequestParam String userName, HttpServletRequest request, @RequestParam Integer serviceProviderID ) { - String jwtToken = null; - - Cookie[] cookies = request.getCookies(); - if (cookies != null) { - for (Cookie cookie : cookies) { - if ("jwt".equalsIgnoreCase(cookie.getName())) { // Cookie name == jwt - jwtToken = cookie.getValue(); - break; - } - } - } - - logger.info("JWT Token From Cookie: " + jwtToken); - logger.info("M_user Request: " + m_user); - - String authHeader = request.getHeader("Authorization"); - logger.info("Authorization Token: " + authHeader); - logger.info("M_user Request: " + m_user); bulkRegistrationServiceimpl.bulkRegistrationErrors.clear(); logger.info("Bulk registration request received. Request payload is omitted from logs."); try { diff --git a/src/main/java/com/iemr/admin/service/bulkRegistration/BulkRegistrationServiceImpl.java b/src/main/java/com/iemr/admin/service/bulkRegistration/BulkRegistrationServiceImpl.java index 0f2debf..bcd35e9 100644 --- a/src/main/java/com/iemr/admin/service/bulkRegistration/BulkRegistrationServiceImpl.java +++ b/src/main/java/com/iemr/admin/service/bulkRegistration/BulkRegistrationServiceImpl.java @@ -346,9 +346,7 @@ private void saveUserUser(Employee employee, Integer row, String authorization, mUser.setEmployeeID(employee.getUserName()); mUser.setServiceProviderID(serviceProviderID); mUser.setPassword(generateStrongPassword(employee.getPassword())); - logger.info("Register_user:" + mUser); M_User1 bulkUserID = employeeMasterInter.saveBulkUserEmployee(mUser); - logger.info("BulkUser:" + bulkUserID); // m_userServiceRoleMapping.setUserID(bulkUserID.getUserID()); // m_userServiceRoleMapping.setServiceProviderID(bulkUserID.getServiceProviderID()); // m_userServiceRoleMapping.setCreatedBy(createdBy);