Files
codeql/javascript/ql/test/query-tests/Security/CWE-022/TaintedPath/tainted-require.js
2019-02-28 15:45:26 -05:00

9 lines
210 B
JavaScript

var express = require('express');
var app = express();
app.get('/some/path', function(req, res) {
// BAD: loading a module based on un-sanitized query parameters
var m = require(req.param("module"));
});