|
84 | 84 | | react-native.js:8:18:8:24 | tainted |
|
85 | 85 | | react-native.js:9:27:9:33 | tainted |
|
86 | 86 | | react-native.js:9:27:9:33 | tainted |
|
| 87 | +| sanitiser.js:20:7:20:27 | tainted | |
| 88 | +| sanitiser.js:20:17:20:27 | window.name | |
| 89 | +| sanitiser.js:20:17:20:27 | window.name | |
| 90 | +| sanitiser.js:27:21:27:44 | '<b>' + ... '</b>' | |
| 91 | +| sanitiser.js:27:21:27:44 | '<b>' + ... '</b>' | |
| 92 | +| sanitiser.js:27:29:27:35 | tainted | |
| 93 | +| sanitiser.js:34:21:34:44 | '<b>' + ... '</b>' | |
| 94 | +| sanitiser.js:34:21:34:44 | '<b>' + ... '</b>' | |
| 95 | +| sanitiser.js:34:29:34:35 | tainted | |
| 96 | +| sanitiser.js:37:21:37:44 | '<b>' + ... '</b>' | |
| 97 | +| sanitiser.js:37:21:37:44 | '<b>' + ... '</b>' | |
| 98 | +| sanitiser.js:37:29:37:35 | tainted | |
| 99 | +| sanitiser.js:42:21:42:44 | '<b>' + ... '</b>' | |
| 100 | +| sanitiser.js:42:21:42:44 | '<b>' + ... '</b>' | |
| 101 | +| sanitiser.js:42:29:42:35 | tainted | |
| 102 | +| sanitiser.js:49:21:49:44 | '<b>' + ... '</b>' | |
| 103 | +| sanitiser.js:49:21:49:44 | '<b>' + ... '</b>' | |
| 104 | +| sanitiser.js:49:29:49:35 | tainted | |
87 | 105 | | stored-xss.js:2:39:2:55 | document.location |
|
88 | 106 | | stored-xss.js:2:39:2:55 | document.location |
|
89 | 107 | | stored-xss.js:2:39:2:62 | documen ... .search |
|
@@ -514,6 +532,23 @@ edges
|
514 | 532 | | react-native.js:7:7:7:33 | tainted | react-native.js:9:27:9:33 | tainted |
|
515 | 533 | | react-native.js:7:17:7:33 | req.param("code") | react-native.js:7:7:7:33 | tainted |
|
516 | 534 | | react-native.js:7:17:7:33 | req.param("code") | react-native.js:7:7:7:33 | tainted |
|
| 535 | +| sanitiser.js:20:7:20:27 | tainted | sanitiser.js:27:29:27:35 | tainted | |
| 536 | +| sanitiser.js:20:7:20:27 | tainted | sanitiser.js:34:29:34:35 | tainted | |
| 537 | +| sanitiser.js:20:7:20:27 | tainted | sanitiser.js:37:29:37:35 | tainted | |
| 538 | +| sanitiser.js:20:7:20:27 | tainted | sanitiser.js:42:29:42:35 | tainted | |
| 539 | +| sanitiser.js:20:7:20:27 | tainted | sanitiser.js:49:29:49:35 | tainted | |
| 540 | +| sanitiser.js:20:17:20:27 | window.name | sanitiser.js:20:7:20:27 | tainted | |
| 541 | +| sanitiser.js:20:17:20:27 | window.name | sanitiser.js:20:7:20:27 | tainted | |
| 542 | +| sanitiser.js:27:29:27:35 | tainted | sanitiser.js:27:21:27:44 | '<b>' + ... '</b>' | |
| 543 | +| sanitiser.js:27:29:27:35 | tainted | sanitiser.js:27:21:27:44 | '<b>' + ... '</b>' | |
| 544 | +| sanitiser.js:34:29:34:35 | tainted | sanitiser.js:34:21:34:44 | '<b>' + ... '</b>' | |
| 545 | +| sanitiser.js:34:29:34:35 | tainted | sanitiser.js:34:21:34:44 | '<b>' + ... '</b>' | |
| 546 | +| sanitiser.js:37:29:37:35 | tainted | sanitiser.js:37:21:37:44 | '<b>' + ... '</b>' | |
| 547 | +| sanitiser.js:37:29:37:35 | tainted | sanitiser.js:37:21:37:44 | '<b>' + ... '</b>' | |
| 548 | +| sanitiser.js:42:29:42:35 | tainted | sanitiser.js:42:21:42:44 | '<b>' + ... '</b>' | |
| 549 | +| sanitiser.js:42:29:42:35 | tainted | sanitiser.js:42:21:42:44 | '<b>' + ... '</b>' | |
| 550 | +| sanitiser.js:49:29:49:35 | tainted | sanitiser.js:49:21:49:44 | '<b>' + ... '</b>' | |
| 551 | +| sanitiser.js:49:29:49:35 | tainted | sanitiser.js:49:21:49:44 | '<b>' + ... '</b>' | |
517 | 552 | | stored-xss.js:2:39:2:55 | document.location | stored-xss.js:2:39:2:62 | documen ... .search |
|
518 | 553 | | stored-xss.js:2:39:2:55 | document.location | stored-xss.js:2:39:2:62 | documen ... .search |
|
519 | 554 | | stored-xss.js:2:39:2:62 | documen ... .search | stored-xss.js:5:20:5:52 | session ... ssion') |
|
@@ -834,6 +869,11 @@ edges
|
834 | 869 | | optionalSanitizer.js:45:18:45:56 | sanitiz ... target | optionalSanitizer.js:26:16:26:32 | document.location | optionalSanitizer.js:45:18:45:56 | sanitiz ... target | Cross-site scripting vulnerability due to $@. | optionalSanitizer.js:26:16:26:32 | document.location | user-provided value |
|
835 | 870 | | react-native.js:8:18:8:24 | tainted | react-native.js:7:17:7:33 | req.param("code") | react-native.js:8:18:8:24 | tainted | Cross-site scripting vulnerability due to $@. | react-native.js:7:17:7:33 | req.param("code") | user-provided value |
|
836 | 871 | | react-native.js:9:27:9:33 | tainted | react-native.js:7:17:7:33 | req.param("code") | react-native.js:9:27:9:33 | tainted | Cross-site scripting vulnerability due to $@. | react-native.js:7:17:7:33 | req.param("code") | user-provided value |
|
| 872 | +| sanitiser.js:27:21:27:44 | '<b>' + ... '</b>' | sanitiser.js:20:17:20:27 | window.name | sanitiser.js:27:21:27:44 | '<b>' + ... '</b>' | Cross-site scripting vulnerability due to $@. | sanitiser.js:20:17:20:27 | window.name | user-provided value | |
| 873 | +| sanitiser.js:34:21:34:44 | '<b>' + ... '</b>' | sanitiser.js:20:17:20:27 | window.name | sanitiser.js:34:21:34:44 | '<b>' + ... '</b>' | Cross-site scripting vulnerability due to $@. | sanitiser.js:20:17:20:27 | window.name | user-provided value | |
| 874 | +| sanitiser.js:37:21:37:44 | '<b>' + ... '</b>' | sanitiser.js:20:17:20:27 | window.name | sanitiser.js:37:21:37:44 | '<b>' + ... '</b>' | Cross-site scripting vulnerability due to $@. | sanitiser.js:20:17:20:27 | window.name | user-provided value | |
| 875 | +| sanitiser.js:42:21:42:44 | '<b>' + ... '</b>' | sanitiser.js:20:17:20:27 | window.name | sanitiser.js:42:21:42:44 | '<b>' + ... '</b>' | Cross-site scripting vulnerability due to $@. | sanitiser.js:20:17:20:27 | window.name | user-provided value | |
| 876 | +| sanitiser.js:49:21:49:44 | '<b>' + ... '</b>' | sanitiser.js:20:17:20:27 | window.name | sanitiser.js:49:21:49:44 | '<b>' + ... '</b>' | Cross-site scripting vulnerability due to $@. | sanitiser.js:20:17:20:27 | window.name | user-provided value | |
837 | 877 | | stored-xss.js:5:20:5:52 | session ... ssion') | stored-xss.js:2:39:2:55 | document.location | stored-xss.js:5:20:5:52 | session ... ssion') | Cross-site scripting vulnerability due to $@. | stored-xss.js:2:39:2:55 | document.location | user-provided value |
|
838 | 878 | | stored-xss.js:8:20:8:48 | localSt ... local') | stored-xss.js:3:35:3:51 | document.location | stored-xss.js:8:20:8:48 | localSt ... local') | Cross-site scripting vulnerability due to $@. | stored-xss.js:3:35:3:51 | document.location | user-provided value |
|
839 | 879 | | stored-xss.js:12:20:12:54 | "<a hre ... ar</a>" | stored-xss.js:3:35:3:51 | document.location | stored-xss.js:12:20:12:54 | "<a hre ... ar</a>" | Cross-site scripting vulnerability due to $@. | stored-xss.js:3:35:3:51 | document.location | user-provided value |
|
|
0 commit comments