Files
codeql/python/ql/test/query-tests/Security/CWE-502/test.py
2018-11-19 15:15:54 +00:00

17 lines
260 B
Python

import flask
import pickle
import yaml
import marshal
from flask import Flask, request
app = Flask(__name__)
@app.route("/")
def hello():
payload = request.args.get('payload')
pickle.loads(payload)
yaml.load(payload)
marshal.loads(payload)