|
65 | 65 | | module.js:11:17:11:30 | req.query.code | module.js:11:17:11:30 | req.query.code | module.js:11:17:11:30 | req.query.code | This code execution depends on a $@. | module.js:11:17:11:30 | req.query.code | user-provided value |
|
66 | 66 | | react-native.js:8:32:8:38 | tainted | react-native.js:7:17:7:33 | req.param("code") | react-native.js:8:32:8:38 | tainted | This code execution depends on a $@. | react-native.js:7:17:7:33 | req.param("code") | user-provided value |
|
67 | 67 | | react-native.js:10:23:10:29 | tainted | react-native.js:7:17:7:33 | req.param("code") | react-native.js:10:23:10:29 | tainted | This code execution depends on a $@. | react-native.js:7:17:7:33 | req.param("code") | user-provided value |
|
68 |
| -| react.js:10:56:10:77 | documen ... on.hash | react.js:10:56:10:77 | documen ... on.hash | react.js:10:56:10:77 | documen ... on.hash | This code execution depends on a $@. | react.js:10:56:10:77 | documen ... on.hash | user-provided value | |
| 68 | +| react.js:11:56:11:77 | documen ... on.hash | react.js:11:56:11:77 | documen ... on.hash | react.js:11:56:11:77 | documen ... on.hash | This code execution depends on a $@. | react.js:11:56:11:77 | documen ... on.hash | user-provided value | |
| 69 | +| react.js:25:8:25:11 | data | react-server-function.js:3:35:3:35 | x | react.js:25:8:25:11 | data | This code execution depends on a $@. | react-server-function.js:3:35:3:35 | x | user-provided value | |
69 | 70 | | template-sinks.js:20:17:20:23 | tainted | template-sinks.js:18:19:18:31 | req.query.foo | template-sinks.js:20:17:20:23 | tainted | Template, which may contain code, depends on a $@. | template-sinks.js:18:19:18:31 | req.query.foo | user-provided value |
|
70 | 71 | | template-sinks.js:21:16:21:22 | tainted | template-sinks.js:18:19:18:31 | req.query.foo | template-sinks.js:21:16:21:22 | tainted | Template, which may contain code, depends on a $@. | template-sinks.js:18:19:18:31 | req.query.foo | user-provided value |
|
71 | 72 | | template-sinks.js:22:18:22:24 | tainted | template-sinks.js:18:19:18:31 | req.query.foo | template-sinks.js:22:18:22:24 | tainted | Template, which may contain code, depends on a $@. | template-sinks.js:18:19:18:31 | req.query.foo | user-provided value |
|
@@ -156,6 +157,12 @@ edges
|
156 | 157 | | react-native.js:7:7:7:33 | tainted | react-native.js:8:32:8:38 | tainted | provenance | |
|
157 | 158 | | react-native.js:7:7:7:33 | tainted | react-native.js:10:23:10:29 | tainted | provenance | |
|
158 | 159 | | react-native.js:7:17:7:33 | req.param("code") | react-native.js:7:7:7:33 | tainted | provenance | |
|
| 160 | +| react-server-function.js:3:35:3:35 | x | react-server-function.js:4:12:4:12 | x | provenance | | |
| 161 | +| react-server-function.js:4:12:4:12 | x | react-server-function.js:4:12:4:29 | x + " from server" | provenance | | |
| 162 | +| react-server-function.js:4:12:4:29 | x + " from server" | react.js:24:20:24:44 | echoSer ... value") [PromiseValue] | provenance | | |
| 163 | +| react.js:24:9:24:45 | data | react.js:25:8:25:11 | data | provenance | | |
| 164 | +| react.js:24:16:24:45 | use(ech ... alue")) | react.js:24:9:24:45 | data | provenance | | |
| 165 | +| react.js:24:20:24:44 | echoSer ... value") [PromiseValue] | react.js:24:16:24:45 | use(ech ... alue")) | provenance | | |
159 | 166 | | template-sinks.js:18:9:18:31 | tainted | template-sinks.js:20:17:20:23 | tainted | provenance | |
|
160 | 167 | | template-sinks.js:18:9:18:31 | tainted | template-sinks.js:21:16:21:22 | tainted | provenance | |
|
161 | 168 | | template-sinks.js:18:9:18:31 | tainted | template-sinks.js:22:18:22:24 | tainted | provenance | |
|
@@ -287,7 +294,14 @@ nodes
|
287 | 294 | | react-native.js:7:17:7:33 | req.param("code") | semmle.label | req.param("code") |
|
288 | 295 | | react-native.js:8:32:8:38 | tainted | semmle.label | tainted |
|
289 | 296 | | react-native.js:10:23:10:29 | tainted | semmle.label | tainted |
|
290 |
| -| react.js:10:56:10:77 | documen ... on.hash | semmle.label | documen ... on.hash | |
| 297 | +| react-server-function.js:3:35:3:35 | x | semmle.label | x | |
| 298 | +| react-server-function.js:4:12:4:12 | x | semmle.label | x | |
| 299 | +| react-server-function.js:4:12:4:29 | x + " from server" | semmle.label | x + " from server" | |
| 300 | +| react.js:11:56:11:77 | documen ... on.hash | semmle.label | documen ... on.hash | |
| 301 | +| react.js:24:9:24:45 | data | semmle.label | data | |
| 302 | +| react.js:24:16:24:45 | use(ech ... alue")) | semmle.label | use(ech ... alue")) | |
| 303 | +| react.js:24:20:24:44 | echoSer ... value") [PromiseValue] | semmle.label | echoSer ... value") [PromiseValue] | |
| 304 | +| react.js:25:8:25:11 | data | semmle.label | data | |
291 | 305 | | template-sinks.js:18:9:18:31 | tainted | semmle.label | tainted |
|
292 | 306 | | template-sinks.js:18:19:18:31 | req.query.foo | semmle.label | req.query.foo |
|
293 | 307 | | template-sinks.js:20:17:20:23 | tainted | semmle.label | tainted |
|
|
0 commit comments