Files
codeql/javascript/ql/test/query-tests/Security/CWE-400/angularmerge.js

4 lines
100 B
JavaScript

addEventListener("message", (event) => {
angular.merge({}, JSON.parse(event.data)); // NOT OK
});