Files
codeql/javascript/ql/test/query-tests/Security/CWE-776/closure.js
2025-02-28 13:29:30 +01:00

5 lines
157 B
JavaScript

function test() {
var src = document.location.search; // $ Source
goog.dom.xml.loadXml(src); // $ Alert - Closure expands internal entities by default
}