JavaScript: Make all taint-based security queries have @kind path-problem.

This commit is contained in:
Max Schaefer
2018-11-08 12:44:43 +00:00
parent 65bcf0f526
commit 60a1357092
30 changed files with 30 additions and 30 deletions

View File

@@ -2,7 +2,7 @@
* @name Host header poisoning in email generation
* @description Using the HTTP Host header to construct a link in an email can facilitate phishing
* attacks and leak password reset tokens.
* @kind problem
* @kind path-problem
* @problem.severity error
* @precision high
* @id js/host-header-forgery-in-email-generation