Files
codeql/javascript/ql/test/query-tests/Security/CWE-451/express-bad.js
2025-02-28 13:28:29 +01:00

8 lines
169 B
JavaScript

var express = require('express'),
app = express(); // $ Alert
app.get('/', function (req, res) {
res.send('X-Frame-Options: ' + res.get('X-Frame-Options'))
})