Files
codeql/javascript/ql/test/query-tests/Security/CWE-770/MissingRateLimit/MissingRateLimiting.js
Asger F 10a7294327 JS: Accept trivial test changes
This adds Alert annotations for alerts that seem intentional by the test
but has not been annotated with 'NOT OK', or the comment was in the wrong
place.

In a few cases I included 'Source' expectations to make it easier to see
what happened. Other 'Source' expectations will be added in bulk a later
commit.
2025-02-28 13:27:43 +01:00

26 lines
471 B
JavaScript

var express = require('express');
var app = express();
app.get('/:path', function(req, res) {
let path = req.params.path;
if (isValidPath(path))
res.sendFile(path);
}); // $ Alert
function f1(req, res) {
let path = req.params.path;
if (isValidPath(path))
res.sendFile(path);
}
function f2(req, res) {
}
function f3(req, res) {
let path = req.params.path;
if (isValidPath(path))
res.sendFile(path);
}
app.get('/:path', f1, f2, f3); // $ Alert