Merge pull request #12802 from erik-krogh/history-xss

JS: add browser history as XSS sink
This commit is contained in:
Erik Krogh Kristensen
2023-04-14 13:35:19 +02:00
committed by GitHub
4 changed files with 22 additions and 0 deletions

View File

@@ -222,6 +222,8 @@ module ClientSideUrlRedirect {
HistoryWriteUrlSink() {
this = History::getBrowserHistory().getMember(["push", "replace"]).getACall().getArgument(0)
}
override predicate isXssSink() { any() }
}
/**