Skip to content

Commit d5450f1

Browse files
committed
use isWildcardLike in MetacharEscapeSanitizer
1 parent d07c71c commit d5450f1

File tree

1 file changed

+2
-4
lines changed
  • javascript/ql/src/semmle/javascript/security/dataflow

1 file changed

+2
-4
lines changed

javascript/ql/src/semmle/javascript/security/dataflow/Xss.qll

Lines changed: 2 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -37,10 +37,8 @@ module Shared {
3737
(
3838
RegExp::alwaysMatchesMetaCharacter(getRegExp().getRoot(), ["<", "'", "\""])
3939
or
40-
// or it's a global inverted char class.
41-
getRegExp().getRoot().(RegExpCharacterClass).isInverted()
42-
or
43-
getRegExp().getRoot().(RegExpQuantifier).getAChild().(RegExpCharacterClass).isInverted()
40+
// or it's like a wild-card.
41+
RegExp::isWildcardLike(getRegExp().getRoot())
4442
)
4543
}
4644
}

0 commit comments

Comments
 (0)