Module DomBasedXssQuery
Provides a taint-tracking configuration for reasoning about DOM-based cross-site scripting vulnerabilities.
Import path
import semmle.javascript.security.dataflow.DomBasedXssQuery
Imports
DomBasedXss | |
javascript | Provides classes for working with JavaScript programs, as well as JSON, YAML and HTML. |
Classes
Configuration | DEPRECATED. Use the |
HtmlSink | A sink that is not a URL write or a JQuery selector, assumed to be a value that is interpreted as HTML. |
Modules
DomBasedXssConfig | A taint-tracking configuration for reasoning about XSS by DOM manipulation. |
Aliases
DomBasedXssFlow | Taint-tracking for reasoning about XSS by DOM manipulation. |