Skip to content

Commit 7f556de

Browse files
committed
Resolve now-fixed spurious XSS results
1 parent c37ecb7 commit 7f556de

File tree

1 file changed

+4
-4
lines changed
  • java/ql/test/query-tests/security/CWE-079/semmle/tests

1 file changed

+4
-4
lines changed

java/ql/test/query-tests/security/CWE-079/semmle/tests/JaxXSS.java

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -37,18 +37,18 @@ public static Response specificContentType(boolean safeContentType, boolean chai
3737
else {
3838
if(chainDirectly) {
3939
if(contentTypeFirst)
40-
return builder.type(MediaType.APPLICATION_JSON).entity(userControlled).build(); // $SPURIOUS: xss
40+
return builder.type(MediaType.APPLICATION_JSON).entity(userControlled).build();
4141
else
42-
return builder.entity(userControlled).type(MediaType.APPLICATION_JSON).build(); // $SPURIOUS: xss
42+
return builder.entity(userControlled).type(MediaType.APPLICATION_JSON).build();
4343
}
4444
else {
4545
if(contentTypeFirst) {
4646
Response.ResponseBuilder builder2 = builder.type(MediaType.APPLICATION_JSON);
47-
return builder2.entity(userControlled).build(); // $SPURIOUS: xss
47+
return builder2.entity(userControlled).build();
4848
}
4949
else {
5050
Response.ResponseBuilder builder2 = builder.entity(userControlled);
51-
return builder2.type(MediaType.APPLICATION_JSON).build(); // $SPURIOUS: xss
51+
return builder2.type(MediaType.APPLICATION_JSON).build();
5252
}
5353
}
5454
}

0 commit comments

Comments
 (0)