Files
codeql/javascript/ql/test/query-tests/Security/CWE-079/DomBasedXss/dom.js
2025-04-02 10:14:03 +02:00

6 lines
160 B
JavaScript

function t1() {
const elm = document.getElementById("foo");
const e2 = elm.getElementsByTagName("bar")[0];
e2.innerHTML = window.name; // $ Alert
}