Files
codeql/javascript/ql/test/query-tests/Security/CWE-352/MissingCsrfMiddlewareGood.js
2020-01-23 14:59:03 +00:00

15 lines
359 B
JavaScript

var express = require('express')
var cookieParser = require('cookie-parser')
var passport = require('passport')
var csrf = require('csurf')
var app = express()
app.use(cookieParser())
app.use(passport.authorize({ session: true }))
app.use(csrf({ cookie:true }))
app.post('/changeEmail', function (req, res) {
let newEmail = req.cookies["newEmail"];
})