Skip to content

Commit c9c9758

Browse files
author
edvraa
committed
Make similarly named files in tests and qhelp in sync
1 parent 57689df commit c9c9758

File tree

2 files changed

+4
-4
lines changed

2 files changed

+4
-4
lines changed

csharp/ql/src/Security Features/CWE-502/UnsafeDeserializationUntrustedInputGood.cs

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -6,7 +6,7 @@ class Good
66
public static object Deserialize(TextBox textBox)
77
{
88
JavaScriptSerializer sr = new JavaScriptSerializer();
9-
// GOOD
9+
// GOOD: no unsafe type resolver
1010
return sr.DeserializeObject(textBox.Text);
1111
}
1212
}

csharp/ql/test/query-tests/Security Features/CWE-502/UnsafeDeserializationUntrustedInput/UnsafeDeserializationUntrustedInputGood.cs

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -5,8 +5,8 @@ class Good
55
{
66
public static object Deserialize(TextBox textBox)
77
{
8-
JavaScriptSerializer sr = new JavaScriptSerializer(new SimpleTypeResolver());
9-
// GOOD
10-
return sr.DeserializeObject("hardcoded");
8+
JavaScriptSerializer sr = new JavaScriptSerializer();
9+
// GOOD: no unsafe type resolver
10+
return sr.DeserializeObject(textBox.Text);
1111
}
1212
}

0 commit comments

Comments
 (0)