|
36 | 36 | | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
37 | 37 | | nodemailer.js:13:50:13:66 | req.query.message |
|
38 | 38 | | nodemailer.js:13:50:13:66 | req.query.message |
|
| 39 | +| optionalSanitizer.js:2:7:2:39 | target | |
| 40 | +| optionalSanitizer.js:2:16:2:32 | document.location | |
| 41 | +| optionalSanitizer.js:2:16:2:32 | document.location | |
| 42 | +| optionalSanitizer.js:2:16:2:39 | documen ... .search | |
| 43 | +| optionalSanitizer.js:6:18:6:23 | target | |
| 44 | +| optionalSanitizer.js:6:18:6:23 | target | |
| 45 | +| optionalSanitizer.js:8:7:8:22 | tainted | |
| 46 | +| optionalSanitizer.js:8:17:8:22 | target | |
| 47 | +| optionalSanitizer.js:9:18:9:24 | tainted | |
| 48 | +| optionalSanitizer.js:9:18:9:24 | tainted | |
| 49 | +| optionalSanitizer.js:15:9:15:14 | target | |
| 50 | +| optionalSanitizer.js:16:18:16:18 | x | |
| 51 | +| optionalSanitizer.js:17:20:17:20 | x | |
| 52 | +| optionalSanitizer.js:17:20:17:20 | x | |
| 53 | +| optionalSanitizer.js:26:7:26:39 | target | |
| 54 | +| optionalSanitizer.js:26:16:26:32 | document.location | |
| 55 | +| optionalSanitizer.js:26:16:26:32 | document.location | |
| 56 | +| optionalSanitizer.js:26:16:26:39 | documen ... .search | |
| 57 | +| optionalSanitizer.js:31:7:31:23 | tainted2 | |
| 58 | +| optionalSanitizer.js:31:18:31:23 | target | |
| 59 | +| optionalSanitizer.js:32:18:32:25 | tainted2 | |
| 60 | +| optionalSanitizer.js:32:18:32:25 | tainted2 | |
| 61 | +| optionalSanitizer.js:34:5:34:36 | tainted2 | |
| 62 | +| optionalSanitizer.js:34:16:34:36 | sanitiz ... inted2) | |
| 63 | +| optionalSanitizer.js:34:28:34:35 | tainted2 | |
| 64 | +| optionalSanitizer.js:36:18:36:25 | tainted2 | |
| 65 | +| optionalSanitizer.js:36:18:36:25 | tainted2 | |
| 66 | +| optionalSanitizer.js:38:7:38:23 | tainted3 | |
| 67 | +| optionalSanitizer.js:38:18:38:23 | target | |
| 68 | +| optionalSanitizer.js:39:18:39:25 | tainted3 | |
| 69 | +| optionalSanitizer.js:39:18:39:25 | tainted3 | |
| 70 | +| optionalSanitizer.js:41:5:41:36 | tainted3 | |
| 71 | +| optionalSanitizer.js:41:16:41:36 | sanitiz ... inted3) | |
| 72 | +| optionalSanitizer.js:41:28:41:35 | tainted3 | |
| 73 | +| optionalSanitizer.js:43:18:43:25 | tainted3 | |
| 74 | +| optionalSanitizer.js:43:18:43:25 | tainted3 | |
| 75 | +| optionalSanitizer.js:45:18:45:56 | sanitiz ... target | |
| 76 | +| optionalSanitizer.js:45:18:45:56 | sanitiz ... target | |
| 77 | +| optionalSanitizer.js:45:29:45:47 | sanitizeBad(target) | |
| 78 | +| optionalSanitizer.js:45:41:45:46 | target | |
| 79 | +| optionalSanitizer.js:45:51:45:56 | target | |
39 | 80 | | react-native.js:7:7:7:33 | tainted |
|
40 | 81 | | react-native.js:7:17:7:33 | req.param("code") |
|
41 | 82 | | react-native.js:7:17:7:33 | req.param("code") |
|
@@ -422,6 +463,51 @@ edges
|
422 | 463 | | nodemailer.js:13:50:13:66 | req.query.message | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
423 | 464 | | nodemailer.js:13:50:13:66 | req.query.message | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
424 | 465 | | nodemailer.js:13:50:13:66 | req.query.message | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` |
|
| 466 | +| optionalSanitizer.js:2:7:2:39 | target | optionalSanitizer.js:6:18:6:23 | target | |
| 467 | +| optionalSanitizer.js:2:7:2:39 | target | optionalSanitizer.js:6:18:6:23 | target | |
| 468 | +| optionalSanitizer.js:2:7:2:39 | target | optionalSanitizer.js:8:17:8:22 | target | |
| 469 | +| optionalSanitizer.js:2:7:2:39 | target | optionalSanitizer.js:15:9:15:14 | target | |
| 470 | +| optionalSanitizer.js:2:16:2:32 | document.location | optionalSanitizer.js:2:16:2:39 | documen ... .search | |
| 471 | +| optionalSanitizer.js:2:16:2:32 | document.location | optionalSanitizer.js:2:16:2:39 | documen ... .search | |
| 472 | +| optionalSanitizer.js:2:16:2:39 | documen ... .search | optionalSanitizer.js:2:7:2:39 | target | |
| 473 | +| optionalSanitizer.js:8:7:8:22 | tainted | optionalSanitizer.js:9:18:9:24 | tainted | |
| 474 | +| optionalSanitizer.js:8:7:8:22 | tainted | optionalSanitizer.js:9:18:9:24 | tainted | |
| 475 | +| optionalSanitizer.js:8:17:8:22 | target | optionalSanitizer.js:8:7:8:22 | tainted | |
| 476 | +| optionalSanitizer.js:15:9:15:14 | target | optionalSanitizer.js:16:18:16:18 | x | |
| 477 | +| optionalSanitizer.js:16:18:16:18 | x | optionalSanitizer.js:17:20:17:20 | x | |
| 478 | +| optionalSanitizer.js:16:18:16:18 | x | optionalSanitizer.js:17:20:17:20 | x | |
| 479 | +| optionalSanitizer.js:26:7:26:39 | target | optionalSanitizer.js:31:18:31:23 | target | |
| 480 | +| optionalSanitizer.js:26:7:26:39 | target | optionalSanitizer.js:38:18:38:23 | target | |
| 481 | +| optionalSanitizer.js:26:7:26:39 | target | optionalSanitizer.js:45:41:45:46 | target | |
| 482 | +| optionalSanitizer.js:26:7:26:39 | target | optionalSanitizer.js:45:51:45:56 | target | |
| 483 | +| optionalSanitizer.js:26:16:26:32 | document.location | optionalSanitizer.js:26:16:26:39 | documen ... .search | |
| 484 | +| optionalSanitizer.js:26:16:26:32 | document.location | optionalSanitizer.js:26:16:26:39 | documen ... .search | |
| 485 | +| optionalSanitizer.js:26:16:26:39 | documen ... .search | optionalSanitizer.js:26:7:26:39 | target | |
| 486 | +| optionalSanitizer.js:31:7:31:23 | tainted2 | optionalSanitizer.js:32:18:32:25 | tainted2 | |
| 487 | +| optionalSanitizer.js:31:7:31:23 | tainted2 | optionalSanitizer.js:32:18:32:25 | tainted2 | |
| 488 | +| optionalSanitizer.js:31:7:31:23 | tainted2 | optionalSanitizer.js:34:28:34:35 | tainted2 | |
| 489 | +| optionalSanitizer.js:31:7:31:23 | tainted2 | optionalSanitizer.js:36:18:36:25 | tainted2 | |
| 490 | +| optionalSanitizer.js:31:7:31:23 | tainted2 | optionalSanitizer.js:36:18:36:25 | tainted2 | |
| 491 | +| optionalSanitizer.js:31:18:31:23 | target | optionalSanitizer.js:31:7:31:23 | tainted2 | |
| 492 | +| optionalSanitizer.js:34:5:34:36 | tainted2 | optionalSanitizer.js:36:18:36:25 | tainted2 | |
| 493 | +| optionalSanitizer.js:34:5:34:36 | tainted2 | optionalSanitizer.js:36:18:36:25 | tainted2 | |
| 494 | +| optionalSanitizer.js:34:16:34:36 | sanitiz ... inted2) | optionalSanitizer.js:34:5:34:36 | tainted2 | |
| 495 | +| optionalSanitizer.js:34:28:34:35 | tainted2 | optionalSanitizer.js:34:16:34:36 | sanitiz ... inted2) | |
| 496 | +| optionalSanitizer.js:38:7:38:23 | tainted3 | optionalSanitizer.js:39:18:39:25 | tainted3 | |
| 497 | +| optionalSanitizer.js:38:7:38:23 | tainted3 | optionalSanitizer.js:39:18:39:25 | tainted3 | |
| 498 | +| optionalSanitizer.js:38:7:38:23 | tainted3 | optionalSanitizer.js:41:28:41:35 | tainted3 | |
| 499 | +| optionalSanitizer.js:38:7:38:23 | tainted3 | optionalSanitizer.js:43:18:43:25 | tainted3 | |
| 500 | +| optionalSanitizer.js:38:7:38:23 | tainted3 | optionalSanitizer.js:43:18:43:25 | tainted3 | |
| 501 | +| optionalSanitizer.js:38:18:38:23 | target | optionalSanitizer.js:38:7:38:23 | tainted3 | |
| 502 | +| optionalSanitizer.js:41:5:41:36 | tainted3 | optionalSanitizer.js:43:18:43:25 | tainted3 | |
| 503 | +| optionalSanitizer.js:41:5:41:36 | tainted3 | optionalSanitizer.js:43:18:43:25 | tainted3 | |
| 504 | +| optionalSanitizer.js:41:16:41:36 | sanitiz ... inted3) | optionalSanitizer.js:41:5:41:36 | tainted3 | |
| 505 | +| optionalSanitizer.js:41:28:41:35 | tainted3 | optionalSanitizer.js:41:16:41:36 | sanitiz ... inted3) | |
| 506 | +| optionalSanitizer.js:45:29:45:47 | sanitizeBad(target) | optionalSanitizer.js:45:18:45:56 | sanitiz ... target | |
| 507 | +| optionalSanitizer.js:45:29:45:47 | sanitizeBad(target) | optionalSanitizer.js:45:18:45:56 | sanitiz ... target | |
| 508 | +| optionalSanitizer.js:45:41:45:46 | target | optionalSanitizer.js:45:29:45:47 | sanitizeBad(target) | |
| 509 | +| optionalSanitizer.js:45:51:45:56 | target | optionalSanitizer.js:45:18:45:56 | sanitiz ... target | |
| 510 | +| optionalSanitizer.js:45:51:45:56 | target | optionalSanitizer.js:45:18:45:56 | sanitiz ... target | |
425 | 511 | | react-native.js:7:7:7:33 | tainted | react-native.js:8:18:8:24 | tainted |
|
426 | 512 | | react-native.js:7:7:7:33 | tainted | react-native.js:8:18:8:24 | tainted |
|
427 | 513 | | react-native.js:7:7:7:33 | tainted | react-native.js:9:27:9:33 | tainted |
|
@@ -738,6 +824,14 @@ edges
|
738 | 824 | | jquery.js:7:5:7:34 | "<div i ... + "\\">" | jquery.js:2:17:2:33 | document.location | jquery.js:7:5:7:34 | "<div i ... + "\\">" | Cross-site scripting vulnerability due to $@. | jquery.js:2:17:2:33 | document.location | user-provided value |
|
739 | 825 | | jquery.js:8:18:8:34 | "XSS: " + tainted | jquery.js:2:17:2:33 | document.location | jquery.js:8:18:8:34 | "XSS: " + tainted | Cross-site scripting vulnerability due to $@. | jquery.js:2:17:2:33 | document.location | user-provided value |
|
740 | 826 | | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` | nodemailer.js:13:50:13:66 | req.query.message | nodemailer.js:13:11:13:69 | `Hi, yo ... sage}.` | HTML injection vulnerability due to $@. | nodemailer.js:13:50:13:66 | req.query.message | user-provided value |
|
| 827 | +| optionalSanitizer.js:6:18:6:23 | target | optionalSanitizer.js:2:16:2:32 | document.location | optionalSanitizer.js:6:18:6:23 | target | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:2:16:2:32 | document.location | user-provided value | |
| 828 | +| optionalSanitizer.js:9:18:9:24 | tainted | optionalSanitizer.js:2:16:2:32 | document.location | optionalSanitizer.js:9:18:9:24 | tainted | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:2:16:2:32 | document.location | user-provided value | |
| 829 | +| optionalSanitizer.js:17:20:17:20 | x | optionalSanitizer.js:2:16:2:32 | document.location | optionalSanitizer.js:17:20:17:20 | x | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:2:16:2:32 | document.location | user-provided value | |
| 830 | +| optionalSanitizer.js:32:18:32:25 | tainted2 | optionalSanitizer.js:26:16:26:32 | document.location | optionalSanitizer.js:32:18:32:25 | tainted2 | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:26:16:26:32 | document.location | user-provided value | |
| 831 | +| optionalSanitizer.js:36:18:36:25 | tainted2 | optionalSanitizer.js:26:16:26:32 | document.location | optionalSanitizer.js:36:18:36:25 | tainted2 | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:26:16:26:32 | document.location | user-provided value | |
| 832 | +| optionalSanitizer.js:39:18:39:25 | tainted3 | optionalSanitizer.js:26:16:26:32 | document.location | optionalSanitizer.js:39:18:39:25 | tainted3 | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:26:16:26:32 | document.location | user-provided value | |
| 833 | +| optionalSanitizer.js:43:18:43:25 | tainted3 | optionalSanitizer.js:26:16:26:32 | document.location | optionalSanitizer.js:43:18:43:25 | tainted3 | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:26:16:26:32 | document.location | user-provided value | |
| 834 | +| optionalSanitizer.js:45:18:45:56 | sanitiz ... target | optionalSanitizer.js:26:16:26:32 | document.location | optionalSanitizer.js:45:18:45:56 | sanitiz ... target | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:26:16:26:32 | document.location | user-provided value | |
741 | 835 | | react-native.js:8:18:8:24 | tainted | react-native.js:7:17:7:33 | req.param("code") | react-native.js:8:18:8:24 | tainted | Cross-site scripting vulnerability due to $@. | react-native.js:7:17:7:33 | req.param("code") | user-provided value |
|
742 | 836 | | react-native.js:9:27:9:33 | tainted | react-native.js:7:17:7:33 | req.param("code") | react-native.js:9:27:9:33 | tainted | Cross-site scripting vulnerability due to $@. | react-native.js:7:17:7:33 | req.param("code") | user-provided value |
|
743 | 837 | | stored-xss.js:5:20:5:52 | session ... ssion') | stored-xss.js:2:39:2:55 | document.location | stored-xss.js:5:20:5:52 | session ... ssion') | Cross-site scripting vulnerability due to $@. | stored-xss.js:2:39:2:55 | document.location | user-provided value |
|
|
0 commit comments