|
| 1 | +#select |
| 2 | +| RegExpInjection.js:6:14:6:48 | `^${pro ... r.app$` | RegExpInjection.js:6:18:6:28 | process.env | RegExpInjection.js:6:14:6:48 | `^${pro ... r.app$` | This regular expression is constructed from a $@. | RegExpInjection.js:6:18:6:28 | process.env | environment variable | |
| 3 | +| RegExpInjection.js:8:14:8:40 | `^${pro ... }/bin$` | RegExpInjection.js:8:18:8:28 | process.env | RegExpInjection.js:8:14:8:40 | `^${pro ... }/bin$` | This regular expression is constructed from a $@. | RegExpInjection.js:8:18:8:28 | process.env | environment variable | |
| 4 | +| RegExpInjection.js:11:14:11:19 | envVar | RegExpInjection.js:10:16:10:26 | process.env | RegExpInjection.js:11:14:11:19 | envVar | This regular expression is constructed from a $@. | RegExpInjection.js:10:16:10:26 | process.env | environment variable | |
| 5 | +| RegExpInjection.js:14:14:14:47 | `^${pro ... r.app$` | RegExpInjection.js:14:18:14:29 | process.argv | RegExpInjection.js:14:14:14:47 | `^${pro ... r.app$` | This regular expression is constructed from a $@. | RegExpInjection.js:14:18:14:29 | process.argv | command-line argument | |
| 6 | +| RegExpInjection.js:17:14:17:17 | argv | RegExpInjection.js:16:14:16:25 | process.argv | RegExpInjection.js:17:14:17:17 | argv | This regular expression is constructed from a $@. | RegExpInjection.js:16:14:16:25 | process.argv | command-line argument | |
| 7 | +| RegExpInjection.js:21:14:21:22 | userInput | RegExpInjection.js:20:19:20:36 | req.param("input") | RegExpInjection.js:21:14:21:22 | userInput | This regular expression is constructed from a $@. | RegExpInjection.js:20:19:20:36 | req.param("input") | user-provided value | |
| 8 | +edges |
| 9 | +| RegExpInjection.js:6:18:6:28 | process.env | RegExpInjection.js:6:14:6:48 | `^${pro ... r.app$` | provenance | | |
| 10 | +| RegExpInjection.js:8:18:8:28 | process.env | RegExpInjection.js:8:14:8:40 | `^${pro ... }/bin$` | provenance | | |
| 11 | +| RegExpInjection.js:10:7:10:35 | envVar | RegExpInjection.js:11:14:11:19 | envVar | provenance | | |
| 12 | +| RegExpInjection.js:10:16:10:26 | process.env | RegExpInjection.js:10:7:10:35 | envVar | provenance | | |
| 13 | +| RegExpInjection.js:14:18:14:29 | process.argv | RegExpInjection.js:14:14:14:47 | `^${pro ... r.app$` | provenance | | |
| 14 | +| RegExpInjection.js:16:7:16:28 | argv | RegExpInjection.js:17:14:17:17 | argv | provenance | | |
| 15 | +| RegExpInjection.js:16:14:16:25 | process.argv | RegExpInjection.js:16:7:16:28 | argv | provenance | | |
| 16 | +| RegExpInjection.js:20:7:20:36 | userInput | RegExpInjection.js:21:14:21:22 | userInput | provenance | | |
| 17 | +| RegExpInjection.js:20:19:20:36 | req.param("input") | RegExpInjection.js:20:7:20:36 | userInput | provenance | | |
| 18 | +nodes |
| 19 | +| RegExpInjection.js:6:14:6:48 | `^${pro ... r.app$` | semmle.label | `^${pro ... r.app$` | |
| 20 | +| RegExpInjection.js:6:18:6:28 | process.env | semmle.label | process.env | |
| 21 | +| RegExpInjection.js:8:14:8:40 | `^${pro ... }/bin$` | semmle.label | `^${pro ... }/bin$` | |
| 22 | +| RegExpInjection.js:8:18:8:28 | process.env | semmle.label | process.env | |
| 23 | +| RegExpInjection.js:10:7:10:35 | envVar | semmle.label | envVar | |
| 24 | +| RegExpInjection.js:10:16:10:26 | process.env | semmle.label | process.env | |
| 25 | +| RegExpInjection.js:11:14:11:19 | envVar | semmle.label | envVar | |
| 26 | +| RegExpInjection.js:14:14:14:47 | `^${pro ... r.app$` | semmle.label | `^${pro ... r.app$` | |
| 27 | +| RegExpInjection.js:14:18:14:29 | process.argv | semmle.label | process.argv | |
| 28 | +| RegExpInjection.js:16:7:16:28 | argv | semmle.label | argv | |
| 29 | +| RegExpInjection.js:16:14:16:25 | process.argv | semmle.label | process.argv | |
| 30 | +| RegExpInjection.js:17:14:17:17 | argv | semmle.label | argv | |
| 31 | +| RegExpInjection.js:20:7:20:36 | userInput | semmle.label | userInput | |
| 32 | +| RegExpInjection.js:20:19:20:36 | req.param("input") | semmle.label | req.param("input") | |
| 33 | +| RegExpInjection.js:21:14:21:22 | userInput | semmle.label | userInput | |
| 34 | +subpaths |
0 commit comments