mirror of
https://github.com/github/codeql.git
synced 2025-12-17 01:03:14 +01:00
11 lines
264 B
JavaScript
11 lines
264 B
JavaScript
var express = require('express');
|
|
|
|
var app = express();
|
|
|
|
app.get('/some/path', function(req, res) {
|
|
// BAD: sending a file based on un-sanitized query parameters
|
|
res.sendFile(req.param("gimme"));
|
|
// BAD: same as above
|
|
res.sendfile(req.param("gimme"));
|
|
});
|