File tree Expand file tree Collapse file tree 2 files changed +6
-0
lines changed
javascript/ql/test/experimental/Security/CWE-099 Expand file tree Collapse file tree 2 files changed +6
-0
lines changed Original file line number Diff line number Diff line change 88| test.js:5:35:5:42 | EnvValue |
99| test.js:6:23:6:30 | EnvValue |
1010| test.js:6:23:6:30 | EnvValue |
11+ | test.js:7:22:7:29 | EnvValue |
12+ | test.js:7:22:7:29 | EnvValue |
1113edges
1214| test.js:4:9:4:20 | { EnvValue } | test.js:4:11:4:18 | EnvValue |
1315| test.js:4:9:4:31 | EnvValue | test.js:5:35:5:42 | EnvValue |
1416| test.js:4:9:4:31 | EnvValue | test.js:5:35:5:42 | EnvValue |
1517| test.js:4:9:4:31 | EnvValue | test.js:6:23:6:30 | EnvValue |
1618| test.js:4:9:4:31 | EnvValue | test.js:6:23:6:30 | EnvValue |
19+ | test.js:4:9:4:31 | EnvValue | test.js:7:22:7:29 | EnvValue |
20+ | test.js:4:9:4:31 | EnvValue | test.js:7:22:7:29 | EnvValue |
1721| test.js:4:11:4:18 | EnvValue | test.js:4:9:4:31 | EnvValue |
1822| test.js:4:24:4:31 | req.body | test.js:4:9:4:20 | { EnvValue } |
1923| test.js:4:24:4:31 | req.body | test.js:4:9:4:20 | { EnvValue } |
2024#select
2125| test.js:5:35:5:42 | EnvValue | test.js:4:24:4:31 | req.body | test.js:5:35:5:42 | EnvValue | this environment variable assignment is $@. | test.js:4:24:4:31 | req.body | user controllable |
2226| test.js:6:23:6:30 | EnvValue | test.js:4:24:4:31 | req.body | test.js:6:23:6:30 | EnvValue | this environment variable assignment is $@. | test.js:4:24:4:31 | req.body | user controllable |
27+ | test.js:7:22:7:29 | EnvValue | test.js:4:24:4:31 | req.body | test.js:7:22:7:29 | EnvValue | this environment variable assignment is $@. | test.js:4:24:4:31 | req.body | user controllable |
Original file line number Diff line number Diff line change @@ -4,6 +4,7 @@ http.createServer((req, res) => {
44 const { EnvValue } = req . body ;
55 process . env [ "A_Critical_Env" ] = EnvValue ; // NOT OK
66 process . env [ AKey ] = EnvValue ; // NOT OK
7+ process . env . AKey = EnvValue ; // NOT OK
78
89 res . end ( 'env has been injected!' ) ;
910} ) ;
You can’t perform that action at this time.
0 commit comments