Files
codeql/javascript/ql/test/query-tests/Security/CWE-079/stored-xss.js
2018-12-06 14:53:22 +01:00

10 lines
389 B
JavaScript

(function() {
sessionStorage.setItem('session', document.location.search);
localStorage.setItem('local', document.location.search);
$('myId').html(sessionStorage.getItem('session')); // NOT OK
$('myId').html(localStorage.getItem('session')); // OK
$('myId').html(sessionStorage.getItem('local')); // OK
$('myId').html(localStorage.getItem('local')); // NOT OK
});