We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
isWildcardLike
MetacharEscapeSanitizer
1 parent d07c71c commit d5450f1Copy full SHA for d5450f1
javascript/ql/src/semmle/javascript/security/dataflow/Xss.qll
@@ -37,10 +37,8 @@ module Shared {
37
(
38
RegExp::alwaysMatchesMetaCharacter(getRegExp().getRoot(), ["<", "'", "\""])
39
or
40
- // or it's a global inverted char class.
41
- getRegExp().getRoot().(RegExpCharacterClass).isInverted()
42
- or
43
- getRegExp().getRoot().(RegExpQuantifier).getAChild().(RegExpCharacterClass).isInverted()
+ // or it's like a wild-card.
+ RegExp::isWildcardLike(getRegExp().getRoot())
44
)
45
}
46
0 commit comments