From f96e47db0993ecef12cbbda75ecda67b7cfc7ac7 Mon Sep 17 00:00:00 2001 From: Ahmed Farid <53880570+ahmed532009@users.noreply.github.com> Date: Mon, 21 Feb 2022 12:36:27 +0100 Subject: [PATCH] Update ComparingValueOfSensetiveHeader.java --- .../Security/CWE/CWE-208/ComparingValueOfSensetiveHeader.java | 1 - 1 file changed, 1 deletion(-) diff --git a/java/ql/src/experimental/Security/CWE/CWE-208/ComparingValueOfSensetiveHeader.java b/java/ql/src/experimental/Security/CWE/CWE-208/ComparingValueOfSensetiveHeader.java index 842d956d6de..24e082341b9 100644 --- a/java/ql/src/experimental/Security/CWE/CWE-208/ComparingValueOfSensetiveHeader.java +++ b/java/ql/src/experimental/Security/CWE/CWE-208/ComparingValueOfSensetiveHeader.java @@ -7,7 +7,6 @@ private boolean UnsafecsrfComparison(String csrfTokenInCookie) { return false; } } - private boolean safecsrfComparison(String csrfTokenInCookie) { String csrfTokenInRequest = request.getHeader("X-CSRF-TOKEN"); if (csrfTokenInRequest == null || !MessageDigest.isEqual(