|
23 | 23 | | app.js:58:35:58:68 | req.que ... rString |
|
24 | 24 | | app.js:59:38:59:74 | req.que ... ringRaw |
|
25 | 25 | | app.js:59:38:59:74 | req.que ... ringRaw |
|
| 26 | +| app.js:65:22:65:42 | req.que ... pedHtml | |
| 27 | +| app.js:65:22:65:42 | req.que ... pedHtml | |
| 28 | +| app.js:66:18:66:34 | req.query.rawHtml | |
| 29 | +| app.js:66:18:66:34 | req.query.rawHtml | |
| 30 | +| views/angularjs_include.ejs:2:5:2:22 | <%= escapedHtml %> | |
| 31 | +| views/angularjs_include.ejs:2:5:2:22 | <%= escapedHtml %> | |
| 32 | +| views/angularjs_include.ejs:2:9:2:19 | escapedHtml | |
| 33 | +| views/angularjs_include.ejs:3:5:3:18 | <%- rawHtml %> | |
| 34 | +| views/angularjs_include.ejs:3:5:3:18 | <%- rawHtml %> | |
| 35 | +| views/angularjs_include.ejs:3:9:3:15 | rawHtml | |
| 36 | +| views/angularjs_sinks.ejs:3:9:3:26 | <%= escapedHtml %> | |
| 37 | +| views/angularjs_sinks.ejs:3:9:3:26 | <%= escapedHtml %> | |
| 38 | +| views/angularjs_sinks.ejs:3:13:3:23 | escapedHtml | |
| 39 | +| views/angularjs_sinks.ejs:4:9:4:22 | <%- rawHtml %> | |
| 40 | +| views/angularjs_sinks.ejs:4:9:4:22 | <%- rawHtml %> | |
| 41 | +| views/angularjs_sinks.ejs:4:13:4:19 | rawHtml | |
26 | 42 | | views/ejs_sinks.ejs:13:39:13:64 | <%= dataInGeneratedCode %> |
|
27 | 43 | | views/ejs_sinks.ejs:13:39:13:64 | <%= dataInGeneratedCode %> |
|
28 | 44 | | views/ejs_sinks.ejs:13:43:13:61 | dataInGeneratedCode |
|
@@ -88,6 +104,22 @@ edges
|
88 | 104 | | app.js:58:35:58:68 | req.que ... rString | views/njk_sinks.njk:22:42:22:65 | dataInE ... rString |
|
89 | 105 | | app.js:59:38:59:74 | req.que ... ringRaw | views/njk_sinks.njk:23:42:23:68 | dataInE ... ringRaw |
|
90 | 106 | | app.js:59:38:59:74 | req.que ... ringRaw | views/njk_sinks.njk:23:42:23:68 | dataInE ... ringRaw |
|
| 107 | +| app.js:65:22:65:42 | req.que ... pedHtml | views/angularjs_include.ejs:2:9:2:19 | escapedHtml | |
| 108 | +| app.js:65:22:65:42 | req.que ... pedHtml | views/angularjs_include.ejs:2:9:2:19 | escapedHtml | |
| 109 | +| app.js:65:22:65:42 | req.que ... pedHtml | views/angularjs_sinks.ejs:3:13:3:23 | escapedHtml | |
| 110 | +| app.js:65:22:65:42 | req.que ... pedHtml | views/angularjs_sinks.ejs:3:13:3:23 | escapedHtml | |
| 111 | +| app.js:66:18:66:34 | req.query.rawHtml | views/angularjs_include.ejs:3:9:3:15 | rawHtml | |
| 112 | +| app.js:66:18:66:34 | req.query.rawHtml | views/angularjs_include.ejs:3:9:3:15 | rawHtml | |
| 113 | +| app.js:66:18:66:34 | req.query.rawHtml | views/angularjs_sinks.ejs:4:13:4:19 | rawHtml | |
| 114 | +| app.js:66:18:66:34 | req.query.rawHtml | views/angularjs_sinks.ejs:4:13:4:19 | rawHtml | |
| 115 | +| views/angularjs_include.ejs:2:9:2:19 | escapedHtml | views/angularjs_include.ejs:2:5:2:22 | <%= escapedHtml %> | |
| 116 | +| views/angularjs_include.ejs:2:9:2:19 | escapedHtml | views/angularjs_include.ejs:2:5:2:22 | <%= escapedHtml %> | |
| 117 | +| views/angularjs_include.ejs:3:9:3:15 | rawHtml | views/angularjs_include.ejs:3:5:3:18 | <%- rawHtml %> | |
| 118 | +| views/angularjs_include.ejs:3:9:3:15 | rawHtml | views/angularjs_include.ejs:3:5:3:18 | <%- rawHtml %> | |
| 119 | +| views/angularjs_sinks.ejs:3:13:3:23 | escapedHtml | views/angularjs_sinks.ejs:3:9:3:26 | <%= escapedHtml %> | |
| 120 | +| views/angularjs_sinks.ejs:3:13:3:23 | escapedHtml | views/angularjs_sinks.ejs:3:9:3:26 | <%= escapedHtml %> | |
| 121 | +| views/angularjs_sinks.ejs:4:13:4:19 | rawHtml | views/angularjs_sinks.ejs:4:9:4:22 | <%- rawHtml %> | |
| 122 | +| views/angularjs_sinks.ejs:4:13:4:19 | rawHtml | views/angularjs_sinks.ejs:4:9:4:22 | <%- rawHtml %> | |
91 | 123 | | views/ejs_sinks.ejs:13:43:13:61 | dataInGeneratedCode | views/ejs_sinks.ejs:13:39:13:64 | <%= dataInGeneratedCode %> |
|
92 | 124 | | views/ejs_sinks.ejs:13:43:13:61 | dataInGeneratedCode | views/ejs_sinks.ejs:13:39:13:64 | <%= dataInGeneratedCode %> |
|
93 | 125 | | views/ejs_sinks.ejs:16:23:16:36 | backslashSink1 | views/ejs_sinks.ejs:16:19:16:39 | <%= backslashSink1 %> |
|
@@ -117,6 +149,10 @@ edges
|
117 | 149 | | views/njk_sinks.njk:23:42:23:75 | dataInE ... \| safe | views/njk_sinks.njk:23:39:23:78 | {{ dataInEventHandlerStringRaw \| safe }} |
|
118 | 150 | | views/njk_sinks.njk:23:42:23:75 | dataInE ... \| safe | views/njk_sinks.njk:23:39:23:78 | {{ dataInEventHandlerStringRaw \| safe }} |
|
119 | 151 | #select
|
| 152 | +| views/angularjs_include.ejs:2:5:2:22 | <%= escapedHtml %> | app.js:65:22:65:42 | req.que ... pedHtml | views/angularjs_include.ejs:2:5:2:22 | <%= escapedHtml %> | $@ flows to here and is interpreted by AngularJS, which may evaluate it as code. | app.js:65:22:65:42 | req.que ... pedHtml | User-provided value | |
| 153 | +| views/angularjs_include.ejs:3:5:3:18 | <%- rawHtml %> | app.js:66:18:66:34 | req.query.rawHtml | views/angularjs_include.ejs:3:5:3:18 | <%- rawHtml %> | $@ flows to here and is interpreted by AngularJS, which may evaluate it as code. | app.js:66:18:66:34 | req.query.rawHtml | User-provided value | |
| 154 | +| views/angularjs_sinks.ejs:3:9:3:26 | <%= escapedHtml %> | app.js:65:22:65:42 | req.que ... pedHtml | views/angularjs_sinks.ejs:3:9:3:26 | <%= escapedHtml %> | $@ flows to here and is interpreted by AngularJS, which may evaluate it as code. | app.js:65:22:65:42 | req.que ... pedHtml | User-provided value | |
| 155 | +| views/angularjs_sinks.ejs:4:9:4:22 | <%- rawHtml %> | app.js:66:18:66:34 | req.query.rawHtml | views/angularjs_sinks.ejs:4:9:4:22 | <%- rawHtml %> | $@ flows to here and is interpreted by AngularJS, which may evaluate it as code. | app.js:66:18:66:34 | req.query.rawHtml | User-provided value | |
120 | 156 | | views/ejs_sinks.ejs:13:39:13:64 | <%= dataInGeneratedCode %> | app.js:15:30:15:58 | req.que ... tedCode | views/ejs_sinks.ejs:13:39:13:64 | <%= dataInGeneratedCode %> | $@ flows to here and is interpreted as code. | app.js:15:30:15:58 | req.que ... tedCode | User-provided value |
|
121 | 157 | | views/ejs_sinks.ejs:16:19:16:39 | <%= backslashSink1 %> | app.js:17:25:17:48 | req.que ... shSink1 | views/ejs_sinks.ejs:16:19:16:39 | <%= backslashSink1 %> | $@ flows to here and is interpreted as code. | app.js:17:25:17:48 | req.que ... shSink1 | User-provided value |
|
122 | 158 | | views/ejs_sinks.ejs:21:39:21:69 | <%= dataInEventHandlerString %> | app.js:19:35:19:68 | req.que ... rString | views/ejs_sinks.ejs:21:39:21:69 | <%= dataInEventHandlerString %> | $@ flows to here and is interpreted as code. | app.js:19:35:19:68 | req.que ... rString | User-provided value |
|
|
0 commit comments