SeasonPanPan opened a new pull request, #11872:
URL: https://github.com/apache/dubbo/pull/11872

   
   ## What is the purpose of the change
   The pojo has field with java.util.Collections$SingletonList type when use 
dubbo
   and then the dubbo print ERROR log:
   ```
   11:18:31.217 [main] ERROR 
org.apache.dubbo.common.serialize.fastjson2.Fastjson2SecurityManager -  
   [DUBBO] [Serialization Security] Serialized class 
java.util.Collections$SingletonList is not in allow list. 
   Current mode is `WARN`, will allow to deserialize it by default. 
   Dubbo will set to `STRICT` mode by default in the future. 
   Please add it into security/serialize.allowlist or follow FAQ to configure 
it.
   , dubbo version: 3.2.0-beta.4, current host: 160.6.56.171, error code: 4-21. 
   This may be caused by , go to https://dubbo.apache.org/faq/4/21 to find 
instructions. 
   ```
   Avoid compatibility issues when Dubbo sets to STRICT mode by default in the 
future. 
   add these classes into serialize.allowlist file.
   ```
   java.util.Collections$SingletonList
   java.util.RegularEnumSet
   java.util.JumboEnumSet
   ```
   
   
   ## Brief changelog
   
   
   ## Verifying this change
   
   
   <!-- Follow this checklist to help us incorporate your contribution quickly 
and easily: -->
   
   ## Checklist
   - [x] Make sure there is a 
[GitHub_issue](https://github.com/apache/dubbo/issues) field for the change 
(usually before you start working on it). Trivial changes like typos do not 
require a GitHub issue. Your pull request should address just this issue, 
without pulling in other changes - one PR resolves one issue.
   - [ ] Each commit in the pull request should have a meaningful subject line 
and body.
   - [ ] Write a pull request description that is detailed enough to understand 
what the pull request does, how, and why.
   - [ ] Check if is necessary to patch to Dubbo 3 if you are work on Dubbo 2.7
   - [ ] Write necessary unit-test to verify your logic correction, more mock a 
little better when cross module dependency exist. If the new feature or 
significant change is committed, please remember to add sample in [dubbo 
samples](https://github.com/apache/dubbo-samples) project.
   - [ ] Add some description to 
[dubbo-website](https://github.com/apache/dubbo-website) project if you are 
requesting to add a feature.
   - [ ] GitHub Actions works fine on your own branch.
   - [ ] If this contribution is large, please follow the [Software Donation 
Guide](https://github.com/apache/dubbo/wiki/Software-donation-guide).
   


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]


---------------------------------------------------------------------
To unsubscribe, e-mail: [email protected]
For additional commands, e-mail: [email protected]

Reply via email to