Files
codeql/javascript/ql/test/query-tests/Security/CWE-079/winjs.js

6 lines
182 B
JavaScript

function test(elt) {
var tainted = document.location.search.substring(1);
WinJS.Utilities.setInnerHTMLUnsafe(elt, tainted);
WinJS.Utilities.setOuterHTMLUnsafe(elt, tainted);
}