Remove additional Xss sinks

This commit is contained in:
Esben Sparre Andreasen
2020-10-27 22:07:57 +01:00
committed by GitHub
parent 5346ab2b2b
commit cc08eccf05
3 changed files with 2 additions and 7 deletions

View File

@@ -392,11 +392,6 @@ module DOM {
or
t.start() and
result = domValueRef().getAMethodCall(["item", "namedItem"])
or
t.startInProp("target") and
result = domEventSource()
or
exists(DataFlow::TypeTracker t2 | result = domValueRef(t2).track(t2, t))
}
/** Gets a data flow node that may refer to a value from the DOM. */

View File

@@ -485,8 +485,6 @@ module JQuery {
private DataFlow::SourceNode dollar(DataFlow::TypeTracker t) {
t.start() and
result = dollarSource()
or
exists(DataFlow::TypeTracker t2 | result = dollar(t2).track(t2, t))
}
/**