Max Schaefer
|
8b3e647ae9
|
JavaScript: Do not taint for-in loop variable.
|
2019-07-23 10:52:55 +01:00 |
|
Asger F
|
9046fd15f7
|
JS: Update expected output of XSS query (benign)
|
2019-05-23 08:56:01 +01:00 |
|
Max Schaefer
|
2fce626c3a
|
JavaScript: Add Range.prototype.createContextualFragment as an XSS sink.
|
2019-02-12 16:32:30 +00:00 |
|
Asger F
|
7f538e82c0
|
JS: add test case for non-whitelisted use of location
|
2018-12-18 13:55:05 +00:00 |
|
Asger F
|
02978c97f1
|
JS: whitelist $(location) in simple cases
|
2018-12-18 13:11:42 +00:00 |
|
Asger F
|
c17eca90a1
|
JS: add test case for $(location)
|
2018-12-18 13:06:12 +00:00 |
|
Asger F
|
a96c53f9b8
|
JS: restrict when a variable reference is considered a source
|
2018-12-12 12:28:26 +00:00 |
|
Pavel Avgustinov
|
b55526aa58
|
QL code and tests for C#/C++/JavaScript.
|
2018-08-02 17:53:23 +01:00 |
|