Files
codeql/javascript/ql/test/query-tests/Security/CWE-022/TaintedPath/make-dir.js
2025-04-09 14:42:29 +02:00

12 lines
284 B
JavaScript

import { makeDirectory, makeDirectorySync } from 'make-dir';
const express = require('express');
const app = express();
app.get('/makedir', (req, res) => {
const file = req.query.file; // $ Source
makeDirectory(file); // $ Alert
makeDirectorySync(file); // $ Alert
});