Files
codeql/javascript/ql/test/query-tests/Security/CWE-611/libxml.js
2018-08-02 17:53:23 +01:00

8 lines
219 B
JavaScript

const express = require('express');
const libxmljs = require('libxmljs');
express().get('/some/path', function(req) {
// OK: libxml does not expand entities by default
libxmljs.parseXml(req.param("some-xml"));
});