mirror of
https://github.com/github/codeql.git
synced 2025-12-21 19:26:31 +01:00
702 lines
42 KiB
Plaintext
702 lines
42 KiB
Plaintext
nodes
|
|
| addEventListener.js:1:43:1:47 | event |
|
|
| addEventListener.js:1:43:1:47 | event |
|
|
| addEventListener.js:2:20:2:24 | event |
|
|
| addEventListener.js:2:20:2:29 | event.data |
|
|
| addEventListener.js:2:20:2:29 | event.data |
|
|
| addEventListener.js:5:43:5:48 | data |
|
|
| addEventListener.js:5:43:5:48 | {data} |
|
|
| addEventListener.js:5:43:5:48 | {data} |
|
|
| addEventListener.js:5:44:5:47 | data |
|
|
| addEventListener.js:6:20:6:23 | data |
|
|
| addEventListener.js:6:20:6:23 | data |
|
|
| addEventListener.js:10:21:10:25 | event |
|
|
| addEventListener.js:10:21:10:25 | event |
|
|
| addEventListener.js:12:24:12:28 | event |
|
|
| addEventListener.js:12:24:12:33 | event.data |
|
|
| addEventListener.js:12:24:12:33 | event.data |
|
|
| exception-xss.js:2:6:2:28 | foo |
|
|
| exception-xss.js:2:12:2:28 | document.location |
|
|
| exception-xss.js:2:12:2:28 | document.location |
|
|
| exception-xss.js:86:17:86:19 | foo |
|
|
| exception-xss.js:86:17:86:19 | foo |
|
|
| jquery.js:2:7:2:40 | tainted |
|
|
| jquery.js:2:17:2:33 | document.location |
|
|
| jquery.js:2:17:2:33 | document.location |
|
|
| jquery.js:2:17:2:40 | documen ... .search |
|
|
| jquery.js:4:5:4:11 | tainted |
|
|
| jquery.js:4:5:4:11 | tainted |
|
|
| jquery.js:7:5:7:34 | "<div i ... + "\\">" |
|
|
| jquery.js:7:5:7:34 | "<div i ... + "\\">" |
|
|
| jquery.js:7:20:7:26 | tainted |
|
|
| jquery.js:8:18:8:34 | "XSS: " + tainted |
|
|
| jquery.js:8:18:8:34 | "XSS: " + tainted |
|
|
| jquery.js:8:28:8:34 | tainted |
|
|
| nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
|
| nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
|
| nodemailer.js:13:50:13:66 | req.query.message |
|
|
| nodemailer.js:13:50:13:66 | req.query.message |
|
|
| react-native.js:7:7:7:33 | tainted |
|
|
| react-native.js:7:17:7:33 | req.param("code") |
|
|
| react-native.js:7:17:7:33 | req.param("code") |
|
|
| react-native.js:8:18:8:24 | tainted |
|
|
| react-native.js:8:18:8:24 | tainted |
|
|
| react-native.js:9:27:9:33 | tainted |
|
|
| react-native.js:9:27:9:33 | tainted |
|
|
| stored-xss.js:2:39:2:55 | document.location |
|
|
| stored-xss.js:2:39:2:55 | document.location |
|
|
| stored-xss.js:2:39:2:62 | documen ... .search |
|
|
| stored-xss.js:3:35:3:51 | document.location |
|
|
| stored-xss.js:3:35:3:51 | document.location |
|
|
| stored-xss.js:3:35:3:58 | documen ... .search |
|
|
| stored-xss.js:5:20:5:52 | session ... ssion') |
|
|
| stored-xss.js:5:20:5:52 | session ... ssion') |
|
|
| stored-xss.js:8:20:8:48 | localSt ... local') |
|
|
| stored-xss.js:8:20:8:48 | localSt ... local') |
|
|
| string-manipulations.js:3:16:3:32 | document.location |
|
|
| string-manipulations.js:3:16:3:32 | document.location |
|
|
| string-manipulations.js:3:16:3:32 | document.location |
|
|
| string-manipulations.js:4:16:4:32 | document.location |
|
|
| string-manipulations.js:4:16:4:32 | document.location |
|
|
| string-manipulations.js:4:16:4:37 | documen ... on.href |
|
|
| string-manipulations.js:4:16:4:37 | documen ... on.href |
|
|
| string-manipulations.js:5:16:5:32 | document.location |
|
|
| string-manipulations.js:5:16:5:32 | document.location |
|
|
| string-manipulations.js:5:16:5:37 | documen ... on.href |
|
|
| string-manipulations.js:5:16:5:47 | documen ... lueOf() |
|
|
| string-manipulations.js:5:16:5:47 | documen ... lueOf() |
|
|
| string-manipulations.js:6:16:6:32 | document.location |
|
|
| string-manipulations.js:6:16:6:32 | document.location |
|
|
| string-manipulations.js:6:16:6:37 | documen ... on.href |
|
|
| string-manipulations.js:6:16:6:43 | documen ... f.sup() |
|
|
| string-manipulations.js:6:16:6:43 | documen ... f.sup() |
|
|
| string-manipulations.js:7:16:7:32 | document.location |
|
|
| string-manipulations.js:7:16:7:32 | document.location |
|
|
| string-manipulations.js:7:16:7:37 | documen ... on.href |
|
|
| string-manipulations.js:7:16:7:51 | documen ... rCase() |
|
|
| string-manipulations.js:7:16:7:51 | documen ... rCase() |
|
|
| string-manipulations.js:8:16:8:32 | document.location |
|
|
| string-manipulations.js:8:16:8:32 | document.location |
|
|
| string-manipulations.js:8:16:8:37 | documen ... on.href |
|
|
| string-manipulations.js:8:16:8:48 | documen ... mLeft() |
|
|
| string-manipulations.js:8:16:8:48 | documen ... mLeft() |
|
|
| string-manipulations.js:9:16:9:58 | String. ... n.href) |
|
|
| string-manipulations.js:9:16:9:58 | String. ... n.href) |
|
|
| string-manipulations.js:9:36:9:52 | document.location |
|
|
| string-manipulations.js:9:36:9:52 | document.location |
|
|
| string-manipulations.js:9:36:9:57 | documen ... on.href |
|
|
| string-manipulations.js:10:16:10:45 | String( ... n.href) |
|
|
| string-manipulations.js:10:16:10:45 | String( ... n.href) |
|
|
| string-manipulations.js:10:23:10:39 | document.location |
|
|
| string-manipulations.js:10:23:10:39 | document.location |
|
|
| string-manipulations.js:10:23:10:44 | documen ... on.href |
|
|
| translate.js:6:7:6:39 | target |
|
|
| translate.js:6:16:6:32 | document.location |
|
|
| translate.js:6:16:6:32 | document.location |
|
|
| translate.js:6:16:6:39 | documen ... .search |
|
|
| translate.js:7:42:7:47 | target |
|
|
| translate.js:7:42:7:60 | target.substring(1) |
|
|
| translate.js:9:27:9:50 | searchP ... 'term') |
|
|
| translate.js:9:27:9:50 | searchP ... 'term') |
|
|
| tst3.js:2:12:2:75 | JSON.pa ... tr(1))) |
|
|
| tst3.js:2:23:2:74 | decodeU ... str(1)) |
|
|
| tst3.js:2:42:2:56 | window.location |
|
|
| tst3.js:2:42:2:56 | window.location |
|
|
| tst3.js:2:42:2:63 | window. ... .search |
|
|
| tst3.js:2:42:2:73 | window. ... bstr(1) |
|
|
| tst3.js:4:25:4:28 | data |
|
|
| tst3.js:4:25:4:32 | data.src |
|
|
| tst3.js:4:25:4:32 | data.src |
|
|
| tst3.js:5:26:5:29 | data |
|
|
| tst3.js:5:26:5:31 | data.p |
|
|
| tst3.js:5:26:5:31 | data.p |
|
|
| tst3.js:7:32:7:35 | data |
|
|
| tst3.js:7:32:7:37 | data.p |
|
|
| tst3.js:7:32:7:37 | data.p |
|
|
| tst3.js:9:37:9:40 | data |
|
|
| tst3.js:9:37:9:42 | data.p |
|
|
| tst3.js:9:37:9:42 | data.p |
|
|
| tst3.js:10:38:10:41 | data |
|
|
| tst3.js:10:38:10:43 | data.p |
|
|
| tst3.js:10:38:10:43 | data.p |
|
|
| tst.js:2:7:2:39 | target |
|
|
| tst.js:2:16:2:32 | document.location |
|
|
| tst.js:2:16:2:32 | document.location |
|
|
| tst.js:2:16:2:39 | documen ... .search |
|
|
| tst.js:5:18:5:23 | target |
|
|
| tst.js:5:18:5:23 | target |
|
|
| tst.js:8:18:8:126 | "<OPTIO ... PTION>" |
|
|
| tst.js:8:18:8:126 | "<OPTIO ... PTION>" |
|
|
| tst.js:8:37:8:53 | document.location |
|
|
| tst.js:8:37:8:53 | document.location |
|
|
| tst.js:8:37:8:58 | documen ... on.href |
|
|
| tst.js:8:37:8:114 | documen ... t=")+8) |
|
|
| tst.js:12:5:12:42 | '<div s ... 'px">' |
|
|
| tst.js:12:5:12:42 | '<div s ... 'px">' |
|
|
| tst.js:12:28:12:33 | target |
|
|
| tst.js:19:25:19:41 | document.location |
|
|
| tst.js:19:25:19:41 | document.location |
|
|
| tst.js:20:18:20:35 | params.get('name') |
|
|
| tst.js:20:18:20:35 | params.get('name') |
|
|
| tst.js:23:42:23:47 | target |
|
|
| tst.js:23:42:23:60 | target.substring(1) |
|
|
| tst.js:24:18:24:41 | searchP ... 'name') |
|
|
| tst.js:24:18:24:41 | searchP ... 'name') |
|
|
| tst.js:27:14:27:19 | target |
|
|
| tst.js:29:18:29:23 | target |
|
|
| tst.js:29:18:29:23 | target |
|
|
| tst.js:31:5:31:21 | document.location |
|
|
| tst.js:31:5:31:21 | document.location |
|
|
| tst.js:31:5:31:28 | documen ... .search |
|
|
| tst.js:34:10:34:26 | document.location |
|
|
| tst.js:34:10:34:26 | document.location |
|
|
| tst.js:34:10:34:33 | documen ... .search |
|
|
| tst.js:37:16:37:20 | bar() |
|
|
| tst.js:37:16:37:20 | bar() |
|
|
| tst.js:43:16:43:44 | baz(doc ... search) |
|
|
| tst.js:43:16:43:44 | baz(doc ... search) |
|
|
| tst.js:43:20:43:36 | document.location |
|
|
| tst.js:43:20:43:36 | document.location |
|
|
| tst.js:43:20:43:43 | documen ... .search |
|
|
| tst.js:49:16:49:45 | wrap(do ... search) |
|
|
| tst.js:49:16:49:45 | wrap(do ... search) |
|
|
| tst.js:49:21:49:37 | document.location |
|
|
| tst.js:49:21:49:37 | document.location |
|
|
| tst.js:49:21:49:44 | documen ... .search |
|
|
| tst.js:57:16:57:45 | chop(do ... search) |
|
|
| tst.js:57:16:57:45 | chop(do ... search) |
|
|
| tst.js:57:21:57:37 | document.location |
|
|
| tst.js:57:21:57:37 | document.location |
|
|
| tst.js:57:21:57:44 | documen ... .search |
|
|
| tst.js:59:16:59:45 | chop(do ... search) |
|
|
| tst.js:59:16:59:45 | chop(do ... search) |
|
|
| tst.js:59:21:59:37 | document.location |
|
|
| tst.js:59:21:59:37 | document.location |
|
|
| tst.js:59:21:59:44 | documen ... .search |
|
|
| tst.js:61:16:61:32 | wrap(chop(bar())) |
|
|
| tst.js:61:16:61:32 | wrap(chop(bar())) |
|
|
| tst.js:61:21:61:31 | chop(bar()) |
|
|
| tst.js:61:26:61:30 | bar() |
|
|
| tst.js:63:34:63:34 | s |
|
|
| tst.js:65:18:65:18 | s |
|
|
| tst.js:65:18:65:18 | s |
|
|
| tst.js:67:25:67:41 | document.location |
|
|
| tst.js:67:25:67:41 | document.location |
|
|
| tst.js:67:25:67:48 | documen ... .search |
|
|
| tst.js:68:25:68:41 | document.location |
|
|
| tst.js:68:25:68:41 | document.location |
|
|
| tst.js:68:25:68:48 | documen ... .search |
|
|
| tst.js:71:16:71:20 | bar() |
|
|
| tst.js:71:16:71:20 | bar() |
|
|
| tst.js:73:1:73:27 | [,docum ... search] |
|
|
| tst.js:73:3:73:19 | document.location |
|
|
| tst.js:73:3:73:19 | document.location |
|
|
| tst.js:73:3:73:26 | documen ... .search |
|
|
| tst.js:73:46:73:46 | x |
|
|
| tst.js:76:20:76:20 | x |
|
|
| tst.js:76:20:76:20 | x |
|
|
| tst.js:80:49:80:65 | document.location |
|
|
| tst.js:80:49:80:65 | document.location |
|
|
| tst.js:80:49:80:72 | documen ... .search |
|
|
| tst.js:80:49:80:72 | documen ... .search |
|
|
| tst.js:84:26:84:42 | document.location |
|
|
| tst.js:84:26:84:42 | document.location |
|
|
| tst.js:84:26:84:49 | documen ... .search |
|
|
| tst.js:84:26:84:49 | documen ... .search |
|
|
| tst.js:85:25:85:41 | document.location |
|
|
| tst.js:85:25:85:41 | document.location |
|
|
| tst.js:85:25:85:48 | documen ... .search |
|
|
| tst.js:85:25:85:48 | documen ... .search |
|
|
| tst.js:87:33:87:49 | document.location |
|
|
| tst.js:87:33:87:49 | document.location |
|
|
| tst.js:87:33:87:56 | documen ... .search |
|
|
| tst.js:87:33:87:56 | documen ... .search |
|
|
| tst.js:88:32:88:48 | document.location |
|
|
| tst.js:88:32:88:48 | document.location |
|
|
| tst.js:88:32:88:55 | documen ... .search |
|
|
| tst.js:88:32:88:55 | documen ... .search |
|
|
| tst.js:93:39:93:55 | document.location |
|
|
| tst.js:93:39:93:55 | document.location |
|
|
| tst.js:93:39:93:62 | documen ... .search |
|
|
| tst.js:93:39:93:62 | documen ... .search |
|
|
| tst.js:99:30:99:46 | document.location |
|
|
| tst.js:99:30:99:46 | document.location |
|
|
| tst.js:99:30:99:53 | documen ... .search |
|
|
| tst.js:99:30:99:53 | documen ... .search |
|
|
| tst.js:105:25:105:41 | document.location |
|
|
| tst.js:105:25:105:41 | document.location |
|
|
| tst.js:105:25:105:48 | documen ... .search |
|
|
| tst.js:105:25:105:48 | documen ... .search |
|
|
| tst.js:110:7:110:44 | v |
|
|
| tst.js:110:11:110:27 | document.location |
|
|
| tst.js:110:11:110:27 | document.location |
|
|
| tst.js:110:11:110:34 | documen ... .search |
|
|
| tst.js:110:11:110:44 | documen ... bstr(1) |
|
|
| tst.js:113:18:113:18 | v |
|
|
| tst.js:113:18:113:18 | v |
|
|
| tst.js:139:18:139:18 | v |
|
|
| tst.js:139:18:139:18 | v |
|
|
| tst.js:151:29:151:43 | window.location |
|
|
| tst.js:151:29:151:43 | window.location |
|
|
| tst.js:151:29:151:50 | window. ... .search |
|
|
| tst.js:154:29:154:29 | v |
|
|
| tst.js:154:49:154:49 | v |
|
|
| tst.js:154:49:154:49 | v |
|
|
| tst.js:158:29:158:46 | xssSourceService() |
|
|
| tst.js:158:29:158:46 | xssSourceService() |
|
|
| tst.js:161:40:161:54 | window.location |
|
|
| tst.js:161:40:161:54 | window.location |
|
|
| tst.js:161:40:161:61 | window. ... .search |
|
|
| tst.js:180:9:180:41 | target |
|
|
| tst.js:180:18:180:34 | document.location |
|
|
| tst.js:180:18:180:34 | document.location |
|
|
| tst.js:180:18:180:41 | documen ... .search |
|
|
| tst.js:183:28:183:33 | target |
|
|
| tst.js:183:28:183:33 | target |
|
|
| tst.js:187:9:187:42 | tainted |
|
|
| tst.js:187:19:187:35 | document.location |
|
|
| tst.js:187:19:187:35 | document.location |
|
|
| tst.js:187:19:187:42 | documen ... .search |
|
|
| tst.js:189:31:189:37 | tainted |
|
|
| tst.js:189:31:189:37 | tainted |
|
|
| tst.js:191:42:191:48 | tainted |
|
|
| tst.js:191:42:191:48 | tainted |
|
|
| tst.js:192:33:192:39 | tainted |
|
|
| tst.js:192:33:192:39 | tainted |
|
|
| tst.js:194:54:194:60 | tainted |
|
|
| tst.js:194:54:194:60 | tainted |
|
|
| tst.js:195:45:195:51 | tainted |
|
|
| tst.js:195:45:195:51 | tainted |
|
|
| tst.js:200:9:200:42 | tainted |
|
|
| tst.js:200:19:200:35 | document.location |
|
|
| tst.js:200:19:200:35 | document.location |
|
|
| tst.js:200:19:200:42 | documen ... .search |
|
|
| tst.js:202:67:202:73 | tainted |
|
|
| tst.js:202:67:202:73 | tainted |
|
|
| tst.js:203:67:203:73 | tainted |
|
|
| tst.js:203:67:203:73 | tainted |
|
|
| tst.js:207:35:207:41 | tainted |
|
|
| tst.js:209:46:209:52 | tainted |
|
|
| tst.js:210:38:210:44 | tainted |
|
|
| tst.js:211:35:211:41 | tainted |
|
|
| tst.js:215:28:215:46 | this.state.tainted1 |
|
|
| tst.js:215:28:215:46 | this.state.tainted1 |
|
|
| tst.js:216:28:216:46 | this.state.tainted2 |
|
|
| tst.js:216:28:216:46 | this.state.tainted2 |
|
|
| tst.js:217:28:217:46 | this.state.tainted3 |
|
|
| tst.js:217:28:217:46 | this.state.tainted3 |
|
|
| tst.js:221:32:221:49 | prevState.tainted4 |
|
|
| tst.js:221:32:221:49 | prevState.tainted4 |
|
|
| tst.js:228:28:228:46 | this.props.tainted1 |
|
|
| tst.js:228:28:228:46 | this.props.tainted1 |
|
|
| tst.js:229:28:229:46 | this.props.tainted2 |
|
|
| tst.js:229:28:229:46 | this.props.tainted2 |
|
|
| tst.js:230:28:230:46 | this.props.tainted3 |
|
|
| tst.js:230:28:230:46 | this.props.tainted3 |
|
|
| tst.js:234:32:234:49 | prevProps.tainted4 |
|
|
| tst.js:234:32:234:49 | prevProps.tainted4 |
|
|
| tst.js:239:35:239:41 | tainted |
|
|
| tst.js:241:20:241:26 | tainted |
|
|
| tst.js:243:23:243:29 | tainted |
|
|
| tst.js:244:23:244:29 | tainted |
|
|
| tst.js:250:39:250:55 | props.propTainted |
|
|
| tst.js:254:60:254:82 | this.st ... Tainted |
|
|
| tst.js:254:60:254:82 | this.st ... Tainted |
|
|
| tst.js:258:23:258:29 | tainted |
|
|
| tst.js:262:7:262:17 | window.name |
|
|
| tst.js:262:7:262:17 | window.name |
|
|
| tst.js:262:7:262:17 | window.name |
|
|
| tst.js:263:7:263:10 | name |
|
|
| tst.js:263:7:263:10 | name |
|
|
| tst.js:263:7:263:10 | name |
|
|
| tst.js:267:11:267:21 | window.name |
|
|
| tst.js:267:11:267:21 | window.name |
|
|
| tst.js:267:11:267:21 | window.name |
|
|
| tst.js:283:22:283:29 | location |
|
|
| tst.js:283:22:283:29 | location |
|
|
| tst.js:283:22:283:29 | location |
|
|
| tst.js:288:9:288:29 | tainted |
|
|
| tst.js:288:19:288:29 | window.name |
|
|
| tst.js:288:19:288:29 | window.name |
|
|
| tst.js:291:59:291:65 | tainted |
|
|
| tst.js:291:59:291:65 | tainted |
|
|
| tst.js:304:9:304:16 | location |
|
|
| tst.js:304:9:304:16 | location |
|
|
| tst.js:305:10:305:10 | e |
|
|
| tst.js:306:20:306:20 | e |
|
|
| tst.js:306:20:306:20 | e |
|
|
| tst.js:311:10:311:17 | location |
|
|
| tst.js:311:10:311:17 | location |
|
|
| tst.js:313:10:313:10 | e |
|
|
| tst.js:314:20:314:20 | e |
|
|
| tst.js:314:20:314:20 | e |
|
|
| tst.js:319:35:319:42 | location |
|
|
| tst.js:319:35:319:42 | location |
|
|
| tst.js:319:35:319:42 | location |
|
|
| tst.js:330:18:330:34 | document.location |
|
|
| tst.js:330:18:330:34 | document.location |
|
|
| tst.js:336:18:336:35 | params.get('name') |
|
|
| tst.js:336:18:336:35 | params.get('name') |
|
|
| tst.js:347:20:347:36 | document.location |
|
|
| tst.js:347:20:347:36 | document.location |
|
|
| tst.js:349:5:349:30 | getUrl( ... ring(1) |
|
|
| tst.js:349:5:349:30 | getUrl( ... ring(1) |
|
|
| tst.js:354:7:354:39 | target |
|
|
| tst.js:354:16:354:32 | document.location |
|
|
| tst.js:354:16:354:32 | document.location |
|
|
| tst.js:354:16:354:39 | documen ... .search |
|
|
| tst.js:355:12:355:17 | target |
|
|
| tst.js:355:12:355:17 | target |
|
|
| typeahead.js:9:28:9:30 | loc |
|
|
| typeahead.js:9:28:9:30 | loc |
|
|
| typeahead.js:10:16:10:18 | loc |
|
|
| typeahead.js:10:16:10:18 | loc |
|
|
| typeahead.js:20:13:20:45 | target |
|
|
| typeahead.js:20:22:20:38 | document.location |
|
|
| typeahead.js:20:22:20:38 | document.location |
|
|
| typeahead.js:20:22:20:45 | documen ... .search |
|
|
| typeahead.js:21:12:21:17 | target |
|
|
| typeahead.js:24:30:24:32 | val |
|
|
| typeahead.js:25:18:25:20 | val |
|
|
| typeahead.js:25:18:25:20 | val |
|
|
| v-html.vue:2:8:2:23 | v-html=tainted |
|
|
| v-html.vue:2:8:2:23 | v-html=tainted |
|
|
| v-html.vue:6:42:6:58 | document.location |
|
|
| v-html.vue:6:42:6:58 | document.location |
|
|
| winjs.js:2:7:2:53 | tainted |
|
|
| winjs.js:2:17:2:33 | document.location |
|
|
| winjs.js:2:17:2:33 | document.location |
|
|
| winjs.js:2:17:2:40 | documen ... .search |
|
|
| winjs.js:2:17:2:53 | documen ... ring(1) |
|
|
| winjs.js:3:43:3:49 | tainted |
|
|
| winjs.js:3:43:3:49 | tainted |
|
|
| winjs.js:4:43:4:49 | tainted |
|
|
| winjs.js:4:43:4:49 | tainted |
|
|
edges
|
|
| addEventListener.js:1:43:1:47 | event | addEventListener.js:2:20:2:24 | event |
|
|
| addEventListener.js:1:43:1:47 | event | addEventListener.js:2:20:2:24 | event |
|
|
| addEventListener.js:2:20:2:24 | event | addEventListener.js:2:20:2:29 | event.data |
|
|
| addEventListener.js:2:20:2:24 | event | addEventListener.js:2:20:2:29 | event.data |
|
|
| addEventListener.js:5:43:5:48 | data | addEventListener.js:6:20:6:23 | data |
|
|
| addEventListener.js:5:43:5:48 | data | addEventListener.js:6:20:6:23 | data |
|
|
| addEventListener.js:5:43:5:48 | {data} | addEventListener.js:5:44:5:47 | data |
|
|
| addEventListener.js:5:43:5:48 | {data} | addEventListener.js:5:44:5:47 | data |
|
|
| addEventListener.js:5:44:5:47 | data | addEventListener.js:5:43:5:48 | data |
|
|
| addEventListener.js:10:21:10:25 | event | addEventListener.js:12:24:12:28 | event |
|
|
| addEventListener.js:10:21:10:25 | event | addEventListener.js:12:24:12:28 | event |
|
|
| addEventListener.js:12:24:12:28 | event | addEventListener.js:12:24:12:33 | event.data |
|
|
| addEventListener.js:12:24:12:28 | event | addEventListener.js:12:24:12:33 | event.data |
|
|
| exception-xss.js:2:6:2:28 | foo | exception-xss.js:86:17:86:19 | foo |
|
|
| exception-xss.js:2:6:2:28 | foo | exception-xss.js:86:17:86:19 | foo |
|
|
| exception-xss.js:2:12:2:28 | document.location | exception-xss.js:2:6:2:28 | foo |
|
|
| exception-xss.js:2:12:2:28 | document.location | exception-xss.js:2:6:2:28 | foo |
|
|
| jquery.js:2:7:2:40 | tainted | jquery.js:4:5:4:11 | tainted |
|
|
| jquery.js:2:7:2:40 | tainted | jquery.js:4:5:4:11 | tainted |
|
|
| jquery.js:2:7:2:40 | tainted | jquery.js:7:20:7:26 | tainted |
|
|
| jquery.js:2:7:2:40 | tainted | jquery.js:8:28:8:34 | tainted |
|
|
| jquery.js:2:17:2:33 | document.location | jquery.js:2:17:2:40 | documen ... .search |
|
|
| jquery.js:2:17:2:33 | document.location | jquery.js:2:17:2:40 | documen ... .search |
|
|
| jquery.js:2:17:2:40 | documen ... .search | jquery.js:2:7:2:40 | tainted |
|
|
| jquery.js:7:20:7:26 | tainted | jquery.js:7:5:7:34 | "<div i ... + "\\">" |
|
|
| jquery.js:7:20:7:26 | tainted | jquery.js:7:5:7:34 | "<div i ... + "\\">" |
|
|
| jquery.js:8:28:8:34 | tainted | jquery.js:8:18:8:34 | "XSS: " + tainted |
|
|
| jquery.js:8:28:8:34 | tainted | jquery.js:8:18:8:34 | "XSS: " + tainted |
|
|
| nodemailer.js:13:50:13:66 | req.query.message | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
|
| nodemailer.js:13:50:13:66 | req.query.message | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
|
| nodemailer.js:13:50:13:66 | req.query.message | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
|
| nodemailer.js:13:50:13:66 | req.query.message | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
|
| react-native.js:7:7:7:33 | tainted | react-native.js:8:18:8:24 | tainted |
|
|
| react-native.js:7:7:7:33 | tainted | react-native.js:8:18:8:24 | tainted |
|
|
| react-native.js:7:7:7:33 | tainted | react-native.js:9:27:9:33 | tainted |
|
|
| react-native.js:7:7:7:33 | tainted | react-native.js:9:27:9:33 | tainted |
|
|
| react-native.js:7:17:7:33 | req.param("code") | react-native.js:7:7:7:33 | tainted |
|
|
| react-native.js:7:17:7:33 | req.param("code") | react-native.js:7:7:7:33 | tainted |
|
|
| stored-xss.js:2:39:2:55 | document.location | stored-xss.js:2:39:2:62 | documen ... .search |
|
|
| stored-xss.js:2:39:2:55 | document.location | stored-xss.js:2:39:2:62 | documen ... .search |
|
|
| stored-xss.js:2:39:2:62 | documen ... .search | stored-xss.js:5:20:5:52 | session ... ssion') |
|
|
| stored-xss.js:2:39:2:62 | documen ... .search | stored-xss.js:5:20:5:52 | session ... ssion') |
|
|
| stored-xss.js:3:35:3:51 | document.location | stored-xss.js:3:35:3:58 | documen ... .search |
|
|
| stored-xss.js:3:35:3:51 | document.location | stored-xss.js:3:35:3:58 | documen ... .search |
|
|
| stored-xss.js:3:35:3:58 | documen ... .search | stored-xss.js:8:20:8:48 | localSt ... local') |
|
|
| stored-xss.js:3:35:3:58 | documen ... .search | stored-xss.js:8:20:8:48 | localSt ... local') |
|
|
| string-manipulations.js:3:16:3:32 | document.location | string-manipulations.js:3:16:3:32 | document.location |
|
|
| string-manipulations.js:4:16:4:32 | document.location | string-manipulations.js:4:16:4:37 | documen ... on.href |
|
|
| string-manipulations.js:4:16:4:32 | document.location | string-manipulations.js:4:16:4:37 | documen ... on.href |
|
|
| string-manipulations.js:4:16:4:32 | document.location | string-manipulations.js:4:16:4:37 | documen ... on.href |
|
|
| string-manipulations.js:4:16:4:32 | document.location | string-manipulations.js:4:16:4:37 | documen ... on.href |
|
|
| string-manipulations.js:5:16:5:32 | document.location | string-manipulations.js:5:16:5:37 | documen ... on.href |
|
|
| string-manipulations.js:5:16:5:32 | document.location | string-manipulations.js:5:16:5:37 | documen ... on.href |
|
|
| string-manipulations.js:5:16:5:37 | documen ... on.href | string-manipulations.js:5:16:5:47 | documen ... lueOf() |
|
|
| string-manipulations.js:5:16:5:37 | documen ... on.href | string-manipulations.js:5:16:5:47 | documen ... lueOf() |
|
|
| string-manipulations.js:6:16:6:32 | document.location | string-manipulations.js:6:16:6:37 | documen ... on.href |
|
|
| string-manipulations.js:6:16:6:32 | document.location | string-manipulations.js:6:16:6:37 | documen ... on.href |
|
|
| string-manipulations.js:6:16:6:37 | documen ... on.href | string-manipulations.js:6:16:6:43 | documen ... f.sup() |
|
|
| string-manipulations.js:6:16:6:37 | documen ... on.href | string-manipulations.js:6:16:6:43 | documen ... f.sup() |
|
|
| string-manipulations.js:7:16:7:32 | document.location | string-manipulations.js:7:16:7:37 | documen ... on.href |
|
|
| string-manipulations.js:7:16:7:32 | document.location | string-manipulations.js:7:16:7:37 | documen ... on.href |
|
|
| string-manipulations.js:7:16:7:37 | documen ... on.href | string-manipulations.js:7:16:7:51 | documen ... rCase() |
|
|
| string-manipulations.js:7:16:7:37 | documen ... on.href | string-manipulations.js:7:16:7:51 | documen ... rCase() |
|
|
| string-manipulations.js:8:16:8:32 | document.location | string-manipulations.js:8:16:8:37 | documen ... on.href |
|
|
| string-manipulations.js:8:16:8:32 | document.location | string-manipulations.js:8:16:8:37 | documen ... on.href |
|
|
| string-manipulations.js:8:16:8:37 | documen ... on.href | string-manipulations.js:8:16:8:48 | documen ... mLeft() |
|
|
| string-manipulations.js:8:16:8:37 | documen ... on.href | string-manipulations.js:8:16:8:48 | documen ... mLeft() |
|
|
| string-manipulations.js:9:36:9:52 | document.location | string-manipulations.js:9:36:9:57 | documen ... on.href |
|
|
| string-manipulations.js:9:36:9:52 | document.location | string-manipulations.js:9:36:9:57 | documen ... on.href |
|
|
| string-manipulations.js:9:36:9:57 | documen ... on.href | string-manipulations.js:9:16:9:58 | String. ... n.href) |
|
|
| string-manipulations.js:9:36:9:57 | documen ... on.href | string-manipulations.js:9:16:9:58 | String. ... n.href) |
|
|
| string-manipulations.js:10:23:10:39 | document.location | string-manipulations.js:10:23:10:44 | documen ... on.href |
|
|
| string-manipulations.js:10:23:10:39 | document.location | string-manipulations.js:10:23:10:44 | documen ... on.href |
|
|
| string-manipulations.js:10:23:10:44 | documen ... on.href | string-manipulations.js:10:16:10:45 | String( ... n.href) |
|
|
| string-manipulations.js:10:23:10:44 | documen ... on.href | string-manipulations.js:10:16:10:45 | String( ... n.href) |
|
|
| translate.js:6:7:6:39 | target | translate.js:7:42:7:47 | target |
|
|
| translate.js:6:16:6:32 | document.location | translate.js:6:16:6:39 | documen ... .search |
|
|
| translate.js:6:16:6:32 | document.location | translate.js:6:16:6:39 | documen ... .search |
|
|
| translate.js:6:16:6:39 | documen ... .search | translate.js:6:7:6:39 | target |
|
|
| translate.js:7:42:7:47 | target | translate.js:7:42:7:60 | target.substring(1) |
|
|
| translate.js:7:42:7:60 | target.substring(1) | translate.js:9:27:9:50 | searchP ... 'term') |
|
|
| translate.js:7:42:7:60 | target.substring(1) | translate.js:9:27:9:50 | searchP ... 'term') |
|
|
| tst3.js:2:12:2:75 | JSON.pa ... tr(1))) | tst3.js:4:25:4:28 | data |
|
|
| tst3.js:2:12:2:75 | JSON.pa ... tr(1))) | tst3.js:5:26:5:29 | data |
|
|
| tst3.js:2:12:2:75 | JSON.pa ... tr(1))) | tst3.js:7:32:7:35 | data |
|
|
| tst3.js:2:12:2:75 | JSON.pa ... tr(1))) | tst3.js:9:37:9:40 | data |
|
|
| tst3.js:2:12:2:75 | JSON.pa ... tr(1))) | tst3.js:10:38:10:41 | data |
|
|
| tst3.js:2:23:2:74 | decodeU ... str(1)) | tst3.js:2:12:2:75 | JSON.pa ... tr(1))) |
|
|
| tst3.js:2:42:2:56 | window.location | tst3.js:2:42:2:63 | window. ... .search |
|
|
| tst3.js:2:42:2:56 | window.location | tst3.js:2:42:2:63 | window. ... .search |
|
|
| tst3.js:2:42:2:63 | window. ... .search | tst3.js:2:42:2:73 | window. ... bstr(1) |
|
|
| tst3.js:2:42:2:73 | window. ... bstr(1) | tst3.js:2:23:2:74 | decodeU ... str(1)) |
|
|
| tst3.js:4:25:4:28 | data | tst3.js:4:25:4:32 | data.src |
|
|
| tst3.js:4:25:4:28 | data | tst3.js:4:25:4:32 | data.src |
|
|
| tst3.js:5:26:5:29 | data | tst3.js:5:26:5:31 | data.p |
|
|
| tst3.js:5:26:5:29 | data | tst3.js:5:26:5:31 | data.p |
|
|
| tst3.js:7:32:7:35 | data | tst3.js:7:32:7:37 | data.p |
|
|
| tst3.js:7:32:7:35 | data | tst3.js:7:32:7:37 | data.p |
|
|
| tst3.js:9:37:9:40 | data | tst3.js:9:37:9:42 | data.p |
|
|
| tst3.js:9:37:9:40 | data | tst3.js:9:37:9:42 | data.p |
|
|
| tst3.js:10:38:10:41 | data | tst3.js:10:38:10:43 | data.p |
|
|
| tst3.js:10:38:10:41 | data | tst3.js:10:38:10:43 | data.p |
|
|
| tst.js:2:7:2:39 | target | tst.js:5:18:5:23 | target |
|
|
| tst.js:2:7:2:39 | target | tst.js:5:18:5:23 | target |
|
|
| tst.js:2:7:2:39 | target | tst.js:12:28:12:33 | target |
|
|
| tst.js:2:7:2:39 | target | tst.js:23:42:23:47 | target |
|
|
| tst.js:2:16:2:32 | document.location | tst.js:2:16:2:39 | documen ... .search |
|
|
| tst.js:2:16:2:32 | document.location | tst.js:2:16:2:39 | documen ... .search |
|
|
| tst.js:2:16:2:39 | documen ... .search | tst.js:2:7:2:39 | target |
|
|
| tst.js:8:37:8:53 | document.location | tst.js:8:37:8:58 | documen ... on.href |
|
|
| tst.js:8:37:8:53 | document.location | tst.js:8:37:8:58 | documen ... on.href |
|
|
| tst.js:8:37:8:58 | documen ... on.href | tst.js:8:37:8:114 | documen ... t=")+8) |
|
|
| tst.js:8:37:8:114 | documen ... t=")+8) | tst.js:8:18:8:126 | "<OPTIO ... PTION>" |
|
|
| tst.js:8:37:8:114 | documen ... t=")+8) | tst.js:8:18:8:126 | "<OPTIO ... PTION>" |
|
|
| tst.js:12:28:12:33 | target | tst.js:12:5:12:42 | '<div s ... 'px">' |
|
|
| tst.js:12:28:12:33 | target | tst.js:12:5:12:42 | '<div s ... 'px">' |
|
|
| tst.js:19:25:19:41 | document.location | tst.js:20:18:20:35 | params.get('name') |
|
|
| tst.js:19:25:19:41 | document.location | tst.js:20:18:20:35 | params.get('name') |
|
|
| tst.js:19:25:19:41 | document.location | tst.js:20:18:20:35 | params.get('name') |
|
|
| tst.js:19:25:19:41 | document.location | tst.js:20:18:20:35 | params.get('name') |
|
|
| tst.js:23:42:23:47 | target | tst.js:23:42:23:60 | target.substring(1) |
|
|
| tst.js:23:42:23:60 | target.substring(1) | tst.js:24:18:24:41 | searchP ... 'name') |
|
|
| tst.js:23:42:23:60 | target.substring(1) | tst.js:24:18:24:41 | searchP ... 'name') |
|
|
| tst.js:27:14:27:19 | target | tst.js:29:18:29:23 | target |
|
|
| tst.js:27:14:27:19 | target | tst.js:29:18:29:23 | target |
|
|
| tst.js:31:5:31:21 | document.location | tst.js:31:5:31:28 | documen ... .search |
|
|
| tst.js:31:5:31:21 | document.location | tst.js:31:5:31:28 | documen ... .search |
|
|
| tst.js:31:5:31:28 | documen ... .search | tst.js:27:14:27:19 | target |
|
|
| tst.js:34:10:34:26 | document.location | tst.js:34:10:34:33 | documen ... .search |
|
|
| tst.js:34:10:34:26 | document.location | tst.js:34:10:34:33 | documen ... .search |
|
|
| tst.js:34:10:34:33 | documen ... .search | tst.js:37:16:37:20 | bar() |
|
|
| tst.js:34:10:34:33 | documen ... .search | tst.js:37:16:37:20 | bar() |
|
|
| tst.js:34:10:34:33 | documen ... .search | tst.js:61:26:61:30 | bar() |
|
|
| tst.js:34:10:34:33 | documen ... .search | tst.js:71:16:71:20 | bar() |
|
|
| tst.js:34:10:34:33 | documen ... .search | tst.js:71:16:71:20 | bar() |
|
|
| tst.js:43:20:43:36 | document.location | tst.js:43:20:43:43 | documen ... .search |
|
|
| tst.js:43:20:43:36 | document.location | tst.js:43:20:43:43 | documen ... .search |
|
|
| tst.js:43:20:43:43 | documen ... .search | tst.js:43:16:43:44 | baz(doc ... search) |
|
|
| tst.js:43:20:43:43 | documen ... .search | tst.js:43:16:43:44 | baz(doc ... search) |
|
|
| tst.js:49:21:49:37 | document.location | tst.js:49:21:49:44 | documen ... .search |
|
|
| tst.js:49:21:49:37 | document.location | tst.js:49:21:49:44 | documen ... .search |
|
|
| tst.js:49:21:49:44 | documen ... .search | tst.js:49:16:49:45 | wrap(do ... search) |
|
|
| tst.js:49:21:49:44 | documen ... .search | tst.js:49:16:49:45 | wrap(do ... search) |
|
|
| tst.js:57:21:57:37 | document.location | tst.js:57:21:57:44 | documen ... .search |
|
|
| tst.js:57:21:57:37 | document.location | tst.js:57:21:57:44 | documen ... .search |
|
|
| tst.js:57:21:57:44 | documen ... .search | tst.js:57:16:57:45 | chop(do ... search) |
|
|
| tst.js:57:21:57:44 | documen ... .search | tst.js:57:16:57:45 | chop(do ... search) |
|
|
| tst.js:59:21:59:37 | document.location | tst.js:59:21:59:44 | documen ... .search |
|
|
| tst.js:59:21:59:37 | document.location | tst.js:59:21:59:44 | documen ... .search |
|
|
| tst.js:59:21:59:44 | documen ... .search | tst.js:59:16:59:45 | chop(do ... search) |
|
|
| tst.js:59:21:59:44 | documen ... .search | tst.js:59:16:59:45 | chop(do ... search) |
|
|
| tst.js:61:21:61:31 | chop(bar()) | tst.js:61:16:61:32 | wrap(chop(bar())) |
|
|
| tst.js:61:21:61:31 | chop(bar()) | tst.js:61:16:61:32 | wrap(chop(bar())) |
|
|
| tst.js:61:26:61:30 | bar() | tst.js:61:21:61:31 | chop(bar()) |
|
|
| tst.js:63:34:63:34 | s | tst.js:65:18:65:18 | s |
|
|
| tst.js:63:34:63:34 | s | tst.js:65:18:65:18 | s |
|
|
| tst.js:67:25:67:41 | document.location | tst.js:67:25:67:48 | documen ... .search |
|
|
| tst.js:67:25:67:41 | document.location | tst.js:67:25:67:48 | documen ... .search |
|
|
| tst.js:67:25:67:48 | documen ... .search | tst.js:63:34:63:34 | s |
|
|
| tst.js:68:25:68:41 | document.location | tst.js:68:25:68:48 | documen ... .search |
|
|
| tst.js:68:25:68:41 | document.location | tst.js:68:25:68:48 | documen ... .search |
|
|
| tst.js:68:25:68:48 | documen ... .search | tst.js:63:34:63:34 | s |
|
|
| tst.js:73:1:73:27 | [,docum ... search] | tst.js:73:46:73:46 | x |
|
|
| tst.js:73:3:73:19 | document.location | tst.js:73:3:73:26 | documen ... .search |
|
|
| tst.js:73:3:73:19 | document.location | tst.js:73:3:73:26 | documen ... .search |
|
|
| tst.js:73:3:73:26 | documen ... .search | tst.js:73:1:73:27 | [,docum ... search] |
|
|
| tst.js:73:3:73:26 | documen ... .search | tst.js:73:46:73:46 | x |
|
|
| tst.js:73:46:73:46 | x | tst.js:76:20:76:20 | x |
|
|
| tst.js:73:46:73:46 | x | tst.js:76:20:76:20 | x |
|
|
| tst.js:80:49:80:65 | document.location | tst.js:80:49:80:72 | documen ... .search |
|
|
| tst.js:80:49:80:65 | document.location | tst.js:80:49:80:72 | documen ... .search |
|
|
| tst.js:80:49:80:65 | document.location | tst.js:80:49:80:72 | documen ... .search |
|
|
| tst.js:80:49:80:65 | document.location | tst.js:80:49:80:72 | documen ... .search |
|
|
| tst.js:84:26:84:42 | document.location | tst.js:84:26:84:49 | documen ... .search |
|
|
| tst.js:84:26:84:42 | document.location | tst.js:84:26:84:49 | documen ... .search |
|
|
| tst.js:84:26:84:42 | document.location | tst.js:84:26:84:49 | documen ... .search |
|
|
| tst.js:84:26:84:42 | document.location | tst.js:84:26:84:49 | documen ... .search |
|
|
| tst.js:85:25:85:41 | document.location | tst.js:85:25:85:48 | documen ... .search |
|
|
| tst.js:85:25:85:41 | document.location | tst.js:85:25:85:48 | documen ... .search |
|
|
| tst.js:85:25:85:41 | document.location | tst.js:85:25:85:48 | documen ... .search |
|
|
| tst.js:85:25:85:41 | document.location | tst.js:85:25:85:48 | documen ... .search |
|
|
| tst.js:87:33:87:49 | document.location | tst.js:87:33:87:56 | documen ... .search |
|
|
| tst.js:87:33:87:49 | document.location | tst.js:87:33:87:56 | documen ... .search |
|
|
| tst.js:87:33:87:49 | document.location | tst.js:87:33:87:56 | documen ... .search |
|
|
| tst.js:87:33:87:49 | document.location | tst.js:87:33:87:56 | documen ... .search |
|
|
| tst.js:88:32:88:48 | document.location | tst.js:88:32:88:55 | documen ... .search |
|
|
| tst.js:88:32:88:48 | document.location | tst.js:88:32:88:55 | documen ... .search |
|
|
| tst.js:88:32:88:48 | document.location | tst.js:88:32:88:55 | documen ... .search |
|
|
| tst.js:88:32:88:48 | document.location | tst.js:88:32:88:55 | documen ... .search |
|
|
| tst.js:93:39:93:55 | document.location | tst.js:93:39:93:62 | documen ... .search |
|
|
| tst.js:93:39:93:55 | document.location | tst.js:93:39:93:62 | documen ... .search |
|
|
| tst.js:93:39:93:55 | document.location | tst.js:93:39:93:62 | documen ... .search |
|
|
| tst.js:93:39:93:55 | document.location | tst.js:93:39:93:62 | documen ... .search |
|
|
| tst.js:99:30:99:46 | document.location | tst.js:99:30:99:53 | documen ... .search |
|
|
| tst.js:99:30:99:46 | document.location | tst.js:99:30:99:53 | documen ... .search |
|
|
| tst.js:99:30:99:46 | document.location | tst.js:99:30:99:53 | documen ... .search |
|
|
| tst.js:99:30:99:46 | document.location | tst.js:99:30:99:53 | documen ... .search |
|
|
| tst.js:105:25:105:41 | document.location | tst.js:105:25:105:48 | documen ... .search |
|
|
| tst.js:105:25:105:41 | document.location | tst.js:105:25:105:48 | documen ... .search |
|
|
| tst.js:105:25:105:41 | document.location | tst.js:105:25:105:48 | documen ... .search |
|
|
| tst.js:105:25:105:41 | document.location | tst.js:105:25:105:48 | documen ... .search |
|
|
| tst.js:110:7:110:44 | v | tst.js:113:18:113:18 | v |
|
|
| tst.js:110:7:110:44 | v | tst.js:113:18:113:18 | v |
|
|
| tst.js:110:7:110:44 | v | tst.js:139:18:139:18 | v |
|
|
| tst.js:110:7:110:44 | v | tst.js:139:18:139:18 | v |
|
|
| tst.js:110:11:110:27 | document.location | tst.js:110:11:110:34 | documen ... .search |
|
|
| tst.js:110:11:110:27 | document.location | tst.js:110:11:110:34 | documen ... .search |
|
|
| tst.js:110:11:110:34 | documen ... .search | tst.js:110:11:110:44 | documen ... bstr(1) |
|
|
| tst.js:110:11:110:44 | documen ... bstr(1) | tst.js:110:7:110:44 | v |
|
|
| tst.js:151:29:151:43 | window.location | tst.js:151:29:151:50 | window. ... .search |
|
|
| tst.js:151:29:151:43 | window.location | tst.js:151:29:151:50 | window. ... .search |
|
|
| tst.js:151:29:151:50 | window. ... .search | tst.js:154:29:154:29 | v |
|
|
| tst.js:154:29:154:29 | v | tst.js:154:49:154:49 | v |
|
|
| tst.js:154:29:154:29 | v | tst.js:154:49:154:49 | v |
|
|
| tst.js:161:40:161:54 | window.location | tst.js:161:40:161:61 | window. ... .search |
|
|
| tst.js:161:40:161:54 | window.location | tst.js:161:40:161:61 | window. ... .search |
|
|
| tst.js:161:40:161:61 | window. ... .search | tst.js:158:29:158:46 | xssSourceService() |
|
|
| tst.js:161:40:161:61 | window. ... .search | tst.js:158:29:158:46 | xssSourceService() |
|
|
| tst.js:180:9:180:41 | target | tst.js:183:28:183:33 | target |
|
|
| tst.js:180:9:180:41 | target | tst.js:183:28:183:33 | target |
|
|
| tst.js:180:18:180:34 | document.location | tst.js:180:18:180:41 | documen ... .search |
|
|
| tst.js:180:18:180:34 | document.location | tst.js:180:18:180:41 | documen ... .search |
|
|
| tst.js:180:18:180:41 | documen ... .search | tst.js:180:9:180:41 | target |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:189:31:189:37 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:189:31:189:37 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:191:42:191:48 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:191:42:191:48 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:192:33:192:39 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:192:33:192:39 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:194:54:194:60 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:194:54:194:60 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:195:45:195:51 | tainted |
|
|
| tst.js:187:9:187:42 | tainted | tst.js:195:45:195:51 | tainted |
|
|
| tst.js:187:19:187:35 | document.location | tst.js:187:19:187:42 | documen ... .search |
|
|
| tst.js:187:19:187:35 | document.location | tst.js:187:19:187:42 | documen ... .search |
|
|
| tst.js:187:19:187:42 | documen ... .search | tst.js:187:9:187:42 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:202:67:202:73 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:202:67:202:73 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:203:67:203:73 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:203:67:203:73 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:207:35:207:41 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:209:46:209:52 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:210:38:210:44 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:211:35:211:41 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:239:35:239:41 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:241:20:241:26 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:243:23:243:29 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:244:23:244:29 | tainted |
|
|
| tst.js:200:9:200:42 | tainted | tst.js:258:23:258:29 | tainted |
|
|
| tst.js:200:19:200:35 | document.location | tst.js:200:19:200:42 | documen ... .search |
|
|
| tst.js:200:19:200:35 | document.location | tst.js:200:19:200:42 | documen ... .search |
|
|
| tst.js:200:19:200:42 | documen ... .search | tst.js:200:9:200:42 | tainted |
|
|
| tst.js:207:35:207:41 | tainted | tst.js:215:28:215:46 | this.state.tainted1 |
|
|
| tst.js:207:35:207:41 | tainted | tst.js:215:28:215:46 | this.state.tainted1 |
|
|
| tst.js:209:46:209:52 | tainted | tst.js:216:28:216:46 | this.state.tainted2 |
|
|
| tst.js:209:46:209:52 | tainted | tst.js:216:28:216:46 | this.state.tainted2 |
|
|
| tst.js:210:38:210:44 | tainted | tst.js:217:28:217:46 | this.state.tainted3 |
|
|
| tst.js:210:38:210:44 | tainted | tst.js:217:28:217:46 | this.state.tainted3 |
|
|
| tst.js:211:35:211:41 | tainted | tst.js:221:32:221:49 | prevState.tainted4 |
|
|
| tst.js:211:35:211:41 | tainted | tst.js:221:32:221:49 | prevState.tainted4 |
|
|
| tst.js:239:35:239:41 | tainted | tst.js:228:28:228:46 | this.props.tainted1 |
|
|
| tst.js:239:35:239:41 | tainted | tst.js:228:28:228:46 | this.props.tainted1 |
|
|
| tst.js:241:20:241:26 | tainted | tst.js:229:28:229:46 | this.props.tainted2 |
|
|
| tst.js:241:20:241:26 | tainted | tst.js:229:28:229:46 | this.props.tainted2 |
|
|
| tst.js:243:23:243:29 | tainted | tst.js:230:28:230:46 | this.props.tainted3 |
|
|
| tst.js:243:23:243:29 | tainted | tst.js:230:28:230:46 | this.props.tainted3 |
|
|
| tst.js:244:23:244:29 | tainted | tst.js:234:32:234:49 | prevProps.tainted4 |
|
|
| tst.js:244:23:244:29 | tainted | tst.js:234:32:234:49 | prevProps.tainted4 |
|
|
| tst.js:250:39:250:55 | props.propTainted | tst.js:254:60:254:82 | this.st ... Tainted |
|
|
| tst.js:250:39:250:55 | props.propTainted | tst.js:254:60:254:82 | this.st ... Tainted |
|
|
| tst.js:258:23:258:29 | tainted | tst.js:250:39:250:55 | props.propTainted |
|
|
| tst.js:262:7:262:17 | window.name | tst.js:262:7:262:17 | window.name |
|
|
| tst.js:263:7:263:10 | name | tst.js:263:7:263:10 | name |
|
|
| tst.js:267:11:267:21 | window.name | tst.js:267:11:267:21 | window.name |
|
|
| tst.js:283:22:283:29 | location | tst.js:283:22:283:29 | location |
|
|
| tst.js:288:9:288:29 | tainted | tst.js:291:59:291:65 | tainted |
|
|
| tst.js:288:9:288:29 | tainted | tst.js:291:59:291:65 | tainted |
|
|
| tst.js:288:19:288:29 | window.name | tst.js:288:9:288:29 | tainted |
|
|
| tst.js:288:19:288:29 | window.name | tst.js:288:9:288:29 | tainted |
|
|
| tst.js:304:9:304:16 | location | tst.js:305:10:305:10 | e |
|
|
| tst.js:304:9:304:16 | location | tst.js:305:10:305:10 | e |
|
|
| tst.js:305:10:305:10 | e | tst.js:306:20:306:20 | e |
|
|
| tst.js:305:10:305:10 | e | tst.js:306:20:306:20 | e |
|
|
| tst.js:311:10:311:17 | location | tst.js:313:10:313:10 | e |
|
|
| tst.js:311:10:311:17 | location | tst.js:313:10:313:10 | e |
|
|
| tst.js:313:10:313:10 | e | tst.js:314:20:314:20 | e |
|
|
| tst.js:313:10:313:10 | e | tst.js:314:20:314:20 | e |
|
|
| tst.js:319:35:319:42 | location | tst.js:319:35:319:42 | location |
|
|
| tst.js:330:18:330:34 | document.location | tst.js:336:18:336:35 | params.get('name') |
|
|
| tst.js:330:18:330:34 | document.location | tst.js:336:18:336:35 | params.get('name') |
|
|
| tst.js:330:18:330:34 | document.location | tst.js:336:18:336:35 | params.get('name') |
|
|
| tst.js:330:18:330:34 | document.location | tst.js:336:18:336:35 | params.get('name') |
|
|
| tst.js:347:20:347:36 | document.location | tst.js:349:5:349:30 | getUrl( ... ring(1) |
|
|
| tst.js:347:20:347:36 | document.location | tst.js:349:5:349:30 | getUrl( ... ring(1) |
|
|
| tst.js:347:20:347:36 | document.location | tst.js:349:5:349:30 | getUrl( ... ring(1) |
|
|
| tst.js:347:20:347:36 | document.location | tst.js:349:5:349:30 | getUrl( ... ring(1) |
|
|
| tst.js:354:7:354:39 | target | tst.js:355:12:355:17 | target |
|
|
| tst.js:354:7:354:39 | target | tst.js:355:12:355:17 | target |
|
|
| tst.js:354:16:354:32 | document.location | tst.js:354:16:354:39 | documen ... .search |
|
|
| tst.js:354:16:354:32 | document.location | tst.js:354:16:354:39 | documen ... .search |
|
|
| tst.js:354:16:354:39 | documen ... .search | tst.js:354:7:354:39 | target |
|
|
| typeahead.js:9:28:9:30 | loc | typeahead.js:10:16:10:18 | loc |
|
|
| typeahead.js:9:28:9:30 | loc | typeahead.js:10:16:10:18 | loc |
|
|
| typeahead.js:9:28:9:30 | loc | typeahead.js:10:16:10:18 | loc |
|
|
| typeahead.js:9:28:9:30 | loc | typeahead.js:10:16:10:18 | loc |
|
|
| typeahead.js:20:13:20:45 | target | typeahead.js:21:12:21:17 | target |
|
|
| typeahead.js:20:22:20:38 | document.location | typeahead.js:20:22:20:45 | documen ... .search |
|
|
| typeahead.js:20:22:20:38 | document.location | typeahead.js:20:22:20:45 | documen ... .search |
|
|
| typeahead.js:20:22:20:45 | documen ... .search | typeahead.js:20:13:20:45 | target |
|
|
| typeahead.js:21:12:21:17 | target | typeahead.js:24:30:24:32 | val |
|
|
| typeahead.js:24:30:24:32 | val | typeahead.js:25:18:25:20 | val |
|
|
| typeahead.js:24:30:24:32 | val | typeahead.js:25:18:25:20 | val |
|
|
| v-html.vue:6:42:6:58 | document.location | v-html.vue:2:8:2:23 | v-html=tainted |
|
|
| v-html.vue:6:42:6:58 | document.location | v-html.vue:2:8:2:23 | v-html=tainted |
|
|
| v-html.vue:6:42:6:58 | document.location | v-html.vue:2:8:2:23 | v-html=tainted |
|
|
| v-html.vue:6:42:6:58 | document.location | v-html.vue:2:8:2:23 | v-html=tainted |
|
|
| winjs.js:2:7:2:53 | tainted | winjs.js:3:43:3:49 | tainted |
|
|
| winjs.js:2:7:2:53 | tainted | winjs.js:3:43:3:49 | tainted |
|
|
| winjs.js:2:7:2:53 | tainted | winjs.js:4:43:4:49 | tainted |
|
|
| winjs.js:2:7:2:53 | tainted | winjs.js:4:43:4:49 | tainted |
|
|
| winjs.js:2:17:2:33 | document.location | winjs.js:2:17:2:40 | documen ... .search |
|
|
| winjs.js:2:17:2:33 | document.location | winjs.js:2:17:2:40 | documen ... .search |
|
|
| winjs.js:2:17:2:40 | documen ... .search | winjs.js:2:17:2:53 | documen ... ring(1) |
|
|
| winjs.js:2:17:2:53 | documen ... ring(1) | winjs.js:2:7:2:53 | tainted |
|
|
#select
|
|
| typeahead.js:10:16:10:18 | loc | typeahead.js:9:28:9:30 | loc | typeahead.js:10:16:10:18 | loc | Cross-site scripting vulnerability due to $@. | typeahead.js:9:28:9:30 | loc | user-provided value |
|