Files
codeql/javascript/ql/test/query-tests/Security/CWE-079/DomBasedXss/translate.js
2025-02-28 13:29:30 +01:00

12 lines
341 B
JavaScript

(function() {
var translate = {
"own goal": "backpass",
"fumble": "feint"
};
var target = document.location.search // $ Source
var searchParams = new URLSearchParams(target.substring(1));
$('original-term').html(searchParams.get('term')); // $ Alert
$('translated-term').html(translate[searchParams.get('term')]);
})();