Files
codeql/javascript/ql/test/query-tests/Security/CWE-776/jquery.js
2018-08-02 17:53:23 +01:00

7 lines
135 B
JavaScript

function test() {
var src = document.location.search;
// NOT OK: jQuery expands internal entities by default
$.parseXML(src);
}