mirror of
https://github.com/github/codeql.git
synced 2026-01-06 11:10:23 +01:00
84 lines
8.7 KiB
Plaintext
84 lines
8.7 KiB
Plaintext
nodes
|
|
| xss-through-dom.js:2:16:2:34 | $("textarea").val() |
|
|
| xss-through-dom.js:2:16:2:34 | $("textarea").val() |
|
|
| xss-through-dom.js:2:16:2:34 | $("textarea").val() |
|
|
| xss-through-dom.js:4:16:4:40 | $(".som ... .text() |
|
|
| xss-through-dom.js:4:16:4:40 | $(".som ... .text() |
|
|
| xss-through-dom.js:4:16:4:40 | $(".som ... .text() |
|
|
| xss-through-dom.js:8:16:8:53 | $(".som ... arget") |
|
|
| xss-through-dom.js:8:16:8:53 | $(".som ... arget") |
|
|
| xss-through-dom.js:8:16:8:53 | $(".som ... arget") |
|
|
| xss-through-dom.js:11:3:11:42 | documen ... nerText |
|
|
| xss-through-dom.js:11:3:11:42 | documen ... nerText |
|
|
| xss-through-dom.js:11:3:11:42 | documen ... nerText |
|
|
| xss-through-dom.js:19:3:19:44 | documen ... Content |
|
|
| xss-through-dom.js:19:3:19:44 | documen ... Content |
|
|
| xss-through-dom.js:19:3:19:44 | documen ... Content |
|
|
| xss-through-dom.js:23:3:23:48 | documen ... ].value |
|
|
| xss-through-dom.js:23:3:23:48 | documen ... ].value |
|
|
| xss-through-dom.js:23:3:23:48 | documen ... ].value |
|
|
| xss-through-dom.js:27:3:27:61 | documen ... arget') |
|
|
| xss-through-dom.js:27:3:27:61 | documen ... arget') |
|
|
| xss-through-dom.js:27:3:27:61 | documen ... arget') |
|
|
| xss-through-dom.js:51:30:51:48 | $("textarea").val() |
|
|
| xss-through-dom.js:51:30:51:48 | $("textarea").val() |
|
|
| xss-through-dom.js:51:30:51:48 | $("textarea").val() |
|
|
| xss-through-dom.js:54:31:54:49 | $("textarea").val() |
|
|
| xss-through-dom.js:54:31:54:49 | $("textarea").val() |
|
|
| xss-through-dom.js:54:31:54:49 | $("textarea").val() |
|
|
| xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:57:30:57:67 | $("inpu ... "name") |
|
|
| xss-through-dom.js:57:30:57:67 | $("inpu ... "name") |
|
|
| xss-through-dom.js:57:30:57:67 | $("inpu ... "name") |
|
|
| xss-through-dom.js:61:30:61:69 | $(docum ... value") |
|
|
| xss-through-dom.js:61:30:61:69 | $(docum ... value") |
|
|
| xss-through-dom.js:61:30:61:69 | $(docum ... value") |
|
|
| xss-through-dom.js:64:30:64:40 | valMethod() |
|
|
| xss-through-dom.js:64:30:64:40 | valMethod() |
|
|
| xss-through-dom.js:64:30:64:40 | valMethod() |
|
|
| xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:73:9:73:41 | selector |
|
|
| xss-through-dom.js:73:20:73:41 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:73:20:73:41 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:77:7:77:14 | selector |
|
|
| xss-through-dom.js:77:7:77:14 | selector |
|
|
edges
|
|
| xss-through-dom.js:2:16:2:34 | $("textarea").val() | xss-through-dom.js:2:16:2:34 | $("textarea").val() |
|
|
| xss-through-dom.js:4:16:4:40 | $(".som ... .text() | xss-through-dom.js:4:16:4:40 | $(".som ... .text() |
|
|
| xss-through-dom.js:8:16:8:53 | $(".som ... arget") | xss-through-dom.js:8:16:8:53 | $(".som ... arget") |
|
|
| xss-through-dom.js:11:3:11:42 | documen ... nerText | xss-through-dom.js:11:3:11:42 | documen ... nerText |
|
|
| xss-through-dom.js:19:3:19:44 | documen ... Content | xss-through-dom.js:19:3:19:44 | documen ... Content |
|
|
| xss-through-dom.js:23:3:23:48 | documen ... ].value | xss-through-dom.js:23:3:23:48 | documen ... ].value |
|
|
| xss-through-dom.js:27:3:27:61 | documen ... arget') | xss-through-dom.js:27:3:27:61 | documen ... arget') |
|
|
| xss-through-dom.js:51:30:51:48 | $("textarea").val() | xss-through-dom.js:51:30:51:48 | $("textarea").val() |
|
|
| xss-through-dom.js:54:31:54:49 | $("textarea").val() | xss-through-dom.js:54:31:54:49 | $("textarea").val() |
|
|
| xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name | xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:57:30:57:67 | $("inpu ... "name") | xss-through-dom.js:57:30:57:67 | $("inpu ... "name") |
|
|
| xss-through-dom.js:61:30:61:69 | $(docum ... value") | xss-through-dom.js:61:30:61:69 | $(docum ... value") |
|
|
| xss-through-dom.js:64:30:64:40 | valMethod() | xss-through-dom.js:64:30:64:40 | valMethod() |
|
|
| xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name | xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name |
|
|
| xss-through-dom.js:73:9:73:41 | selector | xss-through-dom.js:77:7:77:14 | selector |
|
|
| xss-through-dom.js:73:9:73:41 | selector | xss-through-dom.js:77:7:77:14 | selector |
|
|
| xss-through-dom.js:73:20:73:41 | $("inpu ... 0).name | xss-through-dom.js:73:9:73:41 | selector |
|
|
| xss-through-dom.js:73:20:73:41 | $("inpu ... 0).name | xss-through-dom.js:73:9:73:41 | selector |
|
|
#select
|
|
| xss-through-dom.js:2:16:2:34 | $("textarea").val() | xss-through-dom.js:2:16:2:34 | $("textarea").val() | xss-through-dom.js:2:16:2:34 | $("textarea").val() | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:2:16:2:34 | $("textarea").val() | DOM text |
|
|
| xss-through-dom.js:4:16:4:40 | $(".som ... .text() | xss-through-dom.js:4:16:4:40 | $(".som ... .text() | xss-through-dom.js:4:16:4:40 | $(".som ... .text() | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:4:16:4:40 | $(".som ... .text() | DOM text |
|
|
| xss-through-dom.js:8:16:8:53 | $(".som ... arget") | xss-through-dom.js:8:16:8:53 | $(".som ... arget") | xss-through-dom.js:8:16:8:53 | $(".som ... arget") | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:8:16:8:53 | $(".som ... arget") | DOM text |
|
|
| xss-through-dom.js:11:3:11:42 | documen ... nerText | xss-through-dom.js:11:3:11:42 | documen ... nerText | xss-through-dom.js:11:3:11:42 | documen ... nerText | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:11:3:11:42 | documen ... nerText | DOM text |
|
|
| xss-through-dom.js:19:3:19:44 | documen ... Content | xss-through-dom.js:19:3:19:44 | documen ... Content | xss-through-dom.js:19:3:19:44 | documen ... Content | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:19:3:19:44 | documen ... Content | DOM text |
|
|
| xss-through-dom.js:23:3:23:48 | documen ... ].value | xss-through-dom.js:23:3:23:48 | documen ... ].value | xss-through-dom.js:23:3:23:48 | documen ... ].value | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:23:3:23:48 | documen ... ].value | DOM text |
|
|
| xss-through-dom.js:27:3:27:61 | documen ... arget') | xss-through-dom.js:27:3:27:61 | documen ... arget') | xss-through-dom.js:27:3:27:61 | documen ... arget') | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:27:3:27:61 | documen ... arget') | DOM text |
|
|
| xss-through-dom.js:51:30:51:48 | $("textarea").val() | xss-through-dom.js:51:30:51:48 | $("textarea").val() | xss-through-dom.js:51:30:51:48 | $("textarea").val() | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:51:30:51:48 | $("textarea").val() | DOM text |
|
|
| xss-through-dom.js:54:31:54:49 | $("textarea").val() | xss-through-dom.js:54:31:54:49 | $("textarea").val() | xss-through-dom.js:54:31:54:49 | $("textarea").val() | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:54:31:54:49 | $("textarea").val() | DOM text |
|
|
| xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name | xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name | xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:56:30:56:51 | $("inpu ... 0).name | DOM text |
|
|
| xss-through-dom.js:57:30:57:67 | $("inpu ... "name") | xss-through-dom.js:57:30:57:67 | $("inpu ... "name") | xss-through-dom.js:57:30:57:67 | $("inpu ... "name") | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:57:30:57:67 | $("inpu ... "name") | DOM text |
|
|
| xss-through-dom.js:61:30:61:69 | $(docum ... value") | xss-through-dom.js:61:30:61:69 | $(docum ... value") | xss-through-dom.js:61:30:61:69 | $(docum ... value") | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:61:30:61:69 | $(docum ... value") | DOM text |
|
|
| xss-through-dom.js:64:30:64:40 | valMethod() | xss-through-dom.js:64:30:64:40 | valMethod() | xss-through-dom.js:64:30:64:40 | valMethod() | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:64:30:64:40 | valMethod() | DOM text |
|
|
| xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name | xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name | xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:71:11:71:32 | $("inpu ... 0).name | DOM text |
|
|
| xss-through-dom.js:77:7:77:14 | selector | xss-through-dom.js:73:20:73:41 | $("inpu ... 0).name | xss-through-dom.js:77:7:77:14 | selector | $@ is reinterpreted as HTML without escaping meta-characters. | xss-through-dom.js:73:20:73:41 | $("inpu ... 0).name | DOM text |
|