mirror of
https://github.com/github/codeql.git
synced 2026-04-27 01:35:13 +02:00
@@ -8,9 +8,3 @@ extensions:
|
||||
- ['global', 'Member[process].Member[stdin].Member[on,addListener].WithStringArgument[0=data].Argument[1].Parameter[0]', 'stdin']
|
||||
- ['readline', 'Member[createInterface].ReturnValue.Member[question].Argument[1].Parameter[0]', 'stdin']
|
||||
- ['readline', 'Member[createInterface].ReturnValue.Member[on,addListener].WithStringArgument[0=line].Argument[1].Parameter[0]', 'stdin']
|
||||
|
||||
- addsTo:
|
||||
pack: codeql/javascript-all
|
||||
extensible: barrierModel
|
||||
data:
|
||||
- ['global', 'Member[encodeURIComponent,encodeURI].ReturnValue', 'request-forgery']
|
||||
|
||||
@@ -100,8 +100,4 @@ module IncompleteHtmlAttributeSanitization {
|
||||
result = this.getQuote()
|
||||
}
|
||||
}
|
||||
|
||||
private class SanitizerFromModel extends Sanitizer {
|
||||
SanitizerFromModel() { ModelOutput::barrierNode(this, "request-forgery") }
|
||||
}
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user