@@ -118,6 +118,18 @@ nodes
118118| formatting.js:7:14:7:53 | require ... , evil) |
119119| formatting.js:7:14:7:53 | require ... , evil) |
120120| formatting.js:7:49:7:52 | evil |
121+ | live-server.js:4:11:4:27 | tainted |
122+ | live-server.js:4:21:4:27 | req.url |
123+ | live-server.js:4:21:4:27 | req.url |
124+ | live-server.js:6:13:6:50 | `<html> ... /html>` |
125+ | live-server.js:6:13:6:50 | `<html> ... /html>` |
126+ | live-server.js:6:28:6:34 | tainted |
127+ | live-server.js:10:11:10:27 | tainted |
128+ | live-server.js:10:21:10:27 | req.url |
129+ | live-server.js:10:21:10:27 | req.url |
130+ | live-server.js:12:13:12:50 | `<html> ... /html>` |
131+ | live-server.js:12:13:12:50 | `<html> ... /html>` |
132+ | live-server.js:12:28:12:34 | tainted |
121133| pages/Next.jsx:8:13:8:19 | req.url |
122134| pages/Next.jsx:8:13:8:19 | req.url |
123135| pages/Next.jsx:8:13:8:19 | req.url |
@@ -325,6 +337,16 @@ edges
325337| formatting.js:6:43:6:46 | evil | formatting.js:6:14:6:47 | util.fo ... , evil) |
326338| formatting.js:7:49:7:52 | evil | formatting.js:7:14:7:53 | require ... , evil) |
327339| formatting.js:7:49:7:52 | evil | formatting.js:7:14:7:53 | require ... , evil) |
340+ | live-server.js:4:11:4:27 | tainted | live-server.js:6:28:6:34 | tainted |
341+ | live-server.js:4:21:4:27 | req.url | live-server.js:4:11:4:27 | tainted |
342+ | live-server.js:4:21:4:27 | req.url | live-server.js:4:11:4:27 | tainted |
343+ | live-server.js:6:28:6:34 | tainted | live-server.js:6:13:6:50 | `<html> ... /html>` |
344+ | live-server.js:6:28:6:34 | tainted | live-server.js:6:13:6:50 | `<html> ... /html>` |
345+ | live-server.js:10:11:10:27 | tainted | live-server.js:12:28:12:34 | tainted |
346+ | live-server.js:10:21:10:27 | req.url | live-server.js:10:11:10:27 | tainted |
347+ | live-server.js:10:21:10:27 | req.url | live-server.js:10:11:10:27 | tainted |
348+ | live-server.js:12:28:12:34 | tainted | live-server.js:12:13:12:50 | `<html> ... /html>` |
349+ | live-server.js:12:28:12:34 | tainted | live-server.js:12:13:12:50 | `<html> ... /html>` |
328350| pages/Next.jsx:8:13:8:19 | req.url | pages/Next.jsx:8:13:8:19 | req.url |
329351| pages/Next.jsx:15:13:15:19 | req.url | pages/Next.jsx:15:13:15:19 | req.url |
330352| pages/api/myapi.js:2:14:2:20 | req.url | pages/api/myapi.js:2:14:2:20 | req.url |
@@ -442,6 +464,8 @@ edges
442464| etherpad.js:11:12:11:19 | response | etherpad.js:9:16:9:30 | req.query.jsonp | etherpad.js:11:12:11:19 | response | Cross-site scripting vulnerability due to $@. | etherpad.js:9:16:9:30 | req.query.jsonp | user-provided value |
443465| formatting.js:6:14:6:47 | util.fo ... , evil) | formatting.js:4:16:4:29 | req.query.evil | formatting.js:6:14:6:47 | util.fo ... , evil) | Cross-site scripting vulnerability due to $@. | formatting.js:4:16:4:29 | req.query.evil | user-provided value |
444466| formatting.js:7:14:7:53 | require ... , evil) | formatting.js:4:16:4:29 | req.query.evil | formatting.js:7:14:7:53 | require ... , evil) | Cross-site scripting vulnerability due to $@. | formatting.js:4:16:4:29 | req.query.evil | user-provided value |
467+ | live-server.js:6:13:6:50 | `<html> ... /html>` | live-server.js:4:21:4:27 | req.url | live-server.js:6:13:6:50 | `<html> ... /html>` | Cross-site scripting vulnerability due to $@. | live-server.js:4:21:4:27 | req.url | user-provided value |
468+ | live-server.js:12:13:12:50 | `<html> ... /html>` | live-server.js:10:21:10:27 | req.url | live-server.js:12:13:12:50 | `<html> ... /html>` | Cross-site scripting vulnerability due to $@. | live-server.js:10:21:10:27 | req.url | user-provided value |
445469| pages/Next.jsx:8:13:8:19 | req.url | pages/Next.jsx:8:13:8:19 | req.url | pages/Next.jsx:8:13:8:19 | req.url | Cross-site scripting vulnerability due to $@. | pages/Next.jsx:8:13:8:19 | req.url | user-provided value |
446470| pages/Next.jsx:15:13:15:19 | req.url | pages/Next.jsx:15:13:15:19 | req.url | pages/Next.jsx:15:13:15:19 | req.url | Cross-site scripting vulnerability due to $@. | pages/Next.jsx:15:13:15:19 | req.url | user-provided value |
447471| pages/api/myapi.js:2:14:2:20 | req.url | pages/api/myapi.js:2:14:2:20 | req.url | pages/api/myapi.js:2:14:2:20 | req.url | Cross-site scripting vulnerability due to $@. | pages/api/myapi.js:2:14:2:20 | req.url | user-provided value |
0 commit comments