Files
codeql/javascript/ql/test/query-tests/Security/CWE-094/CodeInjection/webix/webix.html
2023-06-28 15:26:30 +02:00

6 lines
295 B
HTML

<script src="path/to/webix.js" type="text/javascript" charset="utf-8"></script>
<script>
webix.exec(document.location.hash); // NOT OK
webix.ui({ template: document.location.hash }); // NOT OK
webix.ui({ template: function () { return document.location.hash } }); // NOT OK
</script>