Files
codeql/javascript/ql/test/query-tests/Security/CWE-022/TaintedPath/make-dir.js
2025-04-10 14:13:48 +02:00

12 lines
296 B
JavaScript

import { makeDirectory, makeDirectorySync } from 'make-dir';
const express = require('express');
const app = express();
app.get('/makedir', async (req, res) => {
const file = req.query.file; // $ Source
await makeDirectory(file); // $ Alert
makeDirectorySync(file); // $ Alert
});