Python: Add file-like modeling to werkzeug FileStorage

This commit is contained in:
Rasmus Wriedt Larsen
2021-07-20 11:09:02 +02:00
parent 5f5c0b11c7
commit 04190ea308
2 changed files with 18 additions and 0 deletions

View File

@@ -70,6 +70,8 @@ def test_taint(name = "World!", number="0", foo="foo"): # $requestHandler route
request.files['key'], # $ tainted
request.files['key'].filename, # $ MISSING: tainted
request.files['key'].stream, # $ MISSING: tainted
request.files['key'].read(), # $ MISSING: tainted
request.files['key'].stream.read(), # $ MISSING: tainted
request.files.get('key'), # $ tainted
request.files.get('key').filename, # $ MISSING: tainted
request.files.get('key').stream, # $ MISSING: tainted