Skip to content

Commit e4ffdb8

Browse files
committed
add tests for new where condition, update expected test results
1 parent ee05ec0 commit e4ffdb8

File tree

2 files changed

+20
-0
lines changed

2 files changed

+20
-0
lines changed

javascript/ql/test/query-tests/Security/CWE-798/HardcodedCredentials.expected

Lines changed: 8 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -332,6 +332,12 @@ nodes
332332
| HardcodedCredentials.js:401:21:401:43 | "myHard ... ateKey" |
333333
| HardcodedCredentials.js:403:27:403:35 | secretKey |
334334
| HardcodedCredentials.js:403:27:403:35 | secretKey |
335+
| HardcodedCredentialsDemo.js:5:15:5:22 | 'dbuser' |
336+
| HardcodedCredentialsDemo.js:5:15:5:22 | 'dbuser' |
337+
| HardcodedCredentialsDemo.js:5:15:5:22 | 'dbuser' |
338+
| HardcodedCredentialsDemo.js:8:19:8:28 | 'hgfedcba' |
339+
| HardcodedCredentialsDemo.js:8:19:8:28 | 'hgfedcba' |
340+
| HardcodedCredentialsDemo.js:8:19:8:28 | 'hgfedcba' |
335341
edges
336342
| HardcodedCredentials.js:5:15:5:22 | 'dbuser' | HardcodedCredentials.js:5:15:5:22 | 'dbuser' |
337343
| HardcodedCredentials.js:8:19:8:28 | 'hgfedcba' | HardcodedCredentials.js:8:19:8:28 | 'hgfedcba' |
@@ -506,6 +512,8 @@ edges
506512
| HardcodedCredentials.js:401:9:401:43 | secretKey | HardcodedCredentials.js:403:27:403:35 | secretKey |
507513
| HardcodedCredentials.js:401:21:401:43 | "myHard ... ateKey" | HardcodedCredentials.js:401:9:401:43 | secretKey |
508514
| HardcodedCredentials.js:401:21:401:43 | "myHard ... ateKey" | HardcodedCredentials.js:401:9:401:43 | secretKey |
515+
| HardcodedCredentialsDemo.js:5:15:5:22 | 'dbuser' | HardcodedCredentialsDemo.js:5:15:5:22 | 'dbuser' |
516+
| HardcodedCredentialsDemo.js:8:19:8:28 | 'hgfedcba' | HardcodedCredentialsDemo.js:8:19:8:28 | 'hgfedcba' |
509517
#select
510518
| HardcodedCredentials.js:5:15:5:22 | 'dbuser' | HardcodedCredentials.js:5:15:5:22 | 'dbuser' | HardcodedCredentials.js:5:15:5:22 | 'dbuser' | The hard-coded value "dbuser" is used as $@. | HardcodedCredentials.js:5:15:5:22 | 'dbuser' | user name |
511519
| HardcodedCredentials.js:8:19:8:28 | 'hgfedcba' | HardcodedCredentials.js:8:19:8:28 | 'hgfedcba' | HardcodedCredentials.js:8:19:8:28 | 'hgfedcba' | The hard-coded value "hgfedcba" is used as $@. | HardcodedCredentials.js:8:19:8:28 | 'hgfedcba' | password |
Lines changed: 12 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,12 @@
1+
(function () {
2+
const pg = require('pg');
3+
4+
const client = new pg.Client({
5+
user: 'dbuser', // OK
6+
host: 'database.server.com',
7+
database: 'mydb',
8+
password: 'hgfedcba', // OK
9+
port: 3211,
10+
});
11+
client.connect();
12+
})();

0 commit comments

Comments
 (0)