We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent ce3fb6b commit 789c585Copy full SHA for 789c585
python/ql/src/experimental/Security/CWE-113/header_injection.py
@@ -0,0 +1,9 @@
1
+from flask import Response, request, Flask, make_response
2
+
3
4
+@app.route("/flask_Response")
5
+def flask_Response():
6
+ rfs_header = request.args["rfs_header"]
7
+ response = Response()
8
+ response.headers['HeaderName'] = rfs_header
9
+ return response
0 commit comments