mirror of
https://github.com/github/codeql.git
synced 2025-12-17 09:13:20 +01:00
This adds Alert annotations for alerts that seem intentional by the test but has not been annotated with 'NOT OK', or the comment was in the wrong place. In a few cases I included 'Source' expectations to make it easier to see what happened. Other 'Source' expectations will be added in bulk a later commit.
17 lines
438 B
JavaScript
17 lines
438 B
JavaScript
import React from "react";
|
|
import {Helmet} from "react-helmet";
|
|
|
|
class Application extends React.Component {
|
|
render () {
|
|
return (
|
|
<div className="application">
|
|
<Helmet>
|
|
<title>My unsafe</title>
|
|
<script type="application/javascript">{document.location.hash}</script> {/* $ Alert[js/code-injection] */}
|
|
</Helmet>
|
|
</div>
|
|
);
|
|
}
|
|
};
|
|
|
|
export default Application |