|
84 | 84 | | ReflectedXss.js:110:16:110:30 | request.query.p |
|
85 | 85 | | ReflectedXss.js:110:16:110:30 | request.query.p |
|
86 | 86 | | ReflectedXss.js:110:16:110:30 | request.query.p |
|
| 87 | +| ReflectedXss.js:114:11:114:41 | queryKeys | |
| 88 | +| ReflectedXss.js:114:13:114:27 | keys: queryKeys | |
| 89 | +| ReflectedXss.js:114:13:114:27 | keys: queryKeys | |
| 90 | +| ReflectedXss.js:116:11:116:45 | keys | |
| 91 | +| ReflectedXss.js:116:18:116:26 | queryKeys | |
| 92 | +| ReflectedXss.js:116:18:116:45 | queryKe ... s?.keys | |
| 93 | +| ReflectedXss.js:116:31:116:45 | paramKeys?.keys | |
| 94 | +| ReflectedXss.js:116:31:116:45 | paramKeys?.keys | |
| 95 | +| ReflectedXss.js:118:11:118:61 | keyArray | |
| 96 | +| ReflectedXss.js:118:22:118:61 | typeof ... : keys | |
| 97 | +| ReflectedXss.js:118:49:118:54 | [keys] | |
| 98 | +| ReflectedXss.js:118:50:118:53 | keys | |
| 99 | +| ReflectedXss.js:118:58:118:61 | keys | |
| 100 | +| ReflectedXss.js:119:11:119:72 | invalidKeys | |
| 101 | +| ReflectedXss.js:119:25:119:32 | keyArray | |
| 102 | +| ReflectedXss.js:119:25:119:72 | keyArra ... s(key)) | |
| 103 | +| ReflectedXss.js:122:30:122:73 | `${inva ... telist` | |
| 104 | +| ReflectedXss.js:122:30:122:73 | `${inva ... telist` | |
| 105 | +| ReflectedXss.js:122:33:122:43 | invalidKeys | |
| 106 | +| ReflectedXss.js:122:33:122:54 | invalid ... n(', ') | |
87 | 107 | | ReflectedXssContentTypes.js:10:14:10:36 | "FOO: " ... rams.id |
|
88 | 108 | | ReflectedXssContentTypes.js:10:14:10:36 | "FOO: " ... rams.id |
|
89 | 109 | | ReflectedXssContentTypes.js:10:24:10:36 | req.params.id |
|
@@ -307,6 +327,26 @@ edges
|
307 | 327 | | ReflectedXss.js:103:76:103:83 | req.body | ReflectedXss.js:103:12:103:84 | markdow ... q.body) |
|
308 | 328 | | ReflectedXss.js:103:76:103:83 | req.body | ReflectedXss.js:103:12:103:84 | markdow ... q.body) |
|
309 | 329 | | ReflectedXss.js:110:16:110:30 | request.query.p | ReflectedXss.js:110:16:110:30 | request.query.p |
|
| 330 | +| ReflectedXss.js:114:11:114:41 | queryKeys | ReflectedXss.js:116:18:116:26 | queryKeys | |
| 331 | +| ReflectedXss.js:114:13:114:27 | keys: queryKeys | ReflectedXss.js:114:11:114:41 | queryKeys | |
| 332 | +| ReflectedXss.js:114:13:114:27 | keys: queryKeys | ReflectedXss.js:114:11:114:41 | queryKeys | |
| 333 | +| ReflectedXss.js:116:11:116:45 | keys | ReflectedXss.js:118:50:118:53 | keys | |
| 334 | +| ReflectedXss.js:116:11:116:45 | keys | ReflectedXss.js:118:58:118:61 | keys | |
| 335 | +| ReflectedXss.js:116:18:116:26 | queryKeys | ReflectedXss.js:116:18:116:45 | queryKe ... s?.keys | |
| 336 | +| ReflectedXss.js:116:18:116:45 | queryKe ... s?.keys | ReflectedXss.js:116:11:116:45 | keys | |
| 337 | +| ReflectedXss.js:116:31:116:45 | paramKeys?.keys | ReflectedXss.js:116:18:116:45 | queryKe ... s?.keys | |
| 338 | +| ReflectedXss.js:116:31:116:45 | paramKeys?.keys | ReflectedXss.js:116:18:116:45 | queryKe ... s?.keys | |
| 339 | +| ReflectedXss.js:118:11:118:61 | keyArray | ReflectedXss.js:119:25:119:32 | keyArray | |
| 340 | +| ReflectedXss.js:118:22:118:61 | typeof ... : keys | ReflectedXss.js:118:11:118:61 | keyArray | |
| 341 | +| ReflectedXss.js:118:49:118:54 | [keys] | ReflectedXss.js:118:22:118:61 | typeof ... : keys | |
| 342 | +| ReflectedXss.js:118:50:118:53 | keys | ReflectedXss.js:118:49:118:54 | [keys] | |
| 343 | +| ReflectedXss.js:118:58:118:61 | keys | ReflectedXss.js:118:22:118:61 | typeof ... : keys | |
| 344 | +| ReflectedXss.js:119:11:119:72 | invalidKeys | ReflectedXss.js:122:33:122:43 | invalidKeys | |
| 345 | +| ReflectedXss.js:119:25:119:32 | keyArray | ReflectedXss.js:119:25:119:72 | keyArra ... s(key)) | |
| 346 | +| ReflectedXss.js:119:25:119:72 | keyArra ... s(key)) | ReflectedXss.js:119:11:119:72 | invalidKeys | |
| 347 | +| ReflectedXss.js:122:33:122:43 | invalidKeys | ReflectedXss.js:122:33:122:54 | invalid ... n(', ') | |
| 348 | +| ReflectedXss.js:122:33:122:54 | invalid ... n(', ') | ReflectedXss.js:122:30:122:73 | `${inva ... telist` | |
| 349 | +| ReflectedXss.js:122:33:122:54 | invalid ... n(', ') | ReflectedXss.js:122:30:122:73 | `${inva ... telist` | |
310 | 350 | | ReflectedXssContentTypes.js:10:24:10:36 | req.params.id | ReflectedXssContentTypes.js:10:14:10:36 | "FOO: " ... rams.id |
|
311 | 351 | | ReflectedXssContentTypes.js:10:24:10:36 | req.params.id | ReflectedXssContentTypes.js:10:14:10:36 | "FOO: " ... rams.id |
|
312 | 352 | | ReflectedXssContentTypes.js:10:24:10:36 | req.params.id | ReflectedXssContentTypes.js:10:14:10:36 | "FOO: " ... rams.id |
|
@@ -461,6 +501,8 @@ edges
|
461 | 501 | | ReflectedXss.js:100:12:100:39 | markdow ... q.body) | ReflectedXss.js:100:31:100:38 | req.body | ReflectedXss.js:100:12:100:39 | markdow ... q.body) | Cross-site scripting vulnerability due to a $@. | ReflectedXss.js:100:31:100:38 | req.body | user-provided value |
|
462 | 502 | | ReflectedXss.js:103:12:103:84 | markdow ... q.body) | ReflectedXss.js:103:76:103:83 | req.body | ReflectedXss.js:103:12:103:84 | markdow ... q.body) | Cross-site scripting vulnerability due to a $@. | ReflectedXss.js:103:76:103:83 | req.body | user-provided value |
|
463 | 503 | | ReflectedXss.js:110:16:110:30 | request.query.p | ReflectedXss.js:110:16:110:30 | request.query.p | ReflectedXss.js:110:16:110:30 | request.query.p | Cross-site scripting vulnerability due to a $@. | ReflectedXss.js:110:16:110:30 | request.query.p | user-provided value |
|
| 504 | +| ReflectedXss.js:122:30:122:73 | `${inva ... telist` | ReflectedXss.js:114:13:114:27 | keys: queryKeys | ReflectedXss.js:122:30:122:73 | `${inva ... telist` | Cross-site scripting vulnerability due to a $@. | ReflectedXss.js:114:13:114:27 | keys: queryKeys | user-provided value | |
| 505 | +| ReflectedXss.js:122:30:122:73 | `${inva ... telist` | ReflectedXss.js:116:31:116:45 | paramKeys?.keys | ReflectedXss.js:122:30:122:73 | `${inva ... telist` | Cross-site scripting vulnerability due to a $@. | ReflectedXss.js:116:31:116:45 | paramKeys?.keys | user-provided value | |
464 | 506 | | ReflectedXssContentTypes.js:10:14:10:36 | "FOO: " ... rams.id | ReflectedXssContentTypes.js:10:24:10:36 | req.params.id | ReflectedXssContentTypes.js:10:14:10:36 | "FOO: " ... rams.id | Cross-site scripting vulnerability due to a $@. | ReflectedXssContentTypes.js:10:24:10:36 | req.params.id | user-provided value |
|
465 | 507 | | ReflectedXssContentTypes.js:20:14:20:36 | "FOO: " ... rams.id | ReflectedXssContentTypes.js:20:24:20:36 | req.params.id | ReflectedXssContentTypes.js:20:14:20:36 | "FOO: " ... rams.id | Cross-site scripting vulnerability due to a $@. | ReflectedXssContentTypes.js:20:24:20:36 | req.params.id | user-provided value |
|
466 | 508 | | ReflectedXssContentTypes.js:39:13:39:35 | "FOO: " ... rams.id | ReflectedXssContentTypes.js:39:23:39:35 | req.params.id | ReflectedXssContentTypes.js:39:13:39:35 | "FOO: " ... rams.id | Cross-site scripting vulnerability due to a $@. | ReflectedXssContentTypes.js:39:23:39:35 | req.params.id | user-provided value |
|
|
0 commit comments