We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent d64f8c7 commit f01670fCopy full SHA for f01670f
ruby/ql/test/query-tests/security/cwe-598/app/controllers/users_controller.rb
@@ -11,7 +11,7 @@ def login_post
11
end
12
13
def login_get_cookies
14
- password = cookies[:password]
+ password = cookies[:password] # GOOD: data sourced from cookies rather than (plaintext) query params
15
authenticate_user(params[:username], password)
16
17
0 commit comments