Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 29de141

Browse files
committed
JS: remove restriction on truncate calls
1 parent d70d0e2 commit 29de141

1 file changed

Lines changed: 2 additions & 4 deletions

File tree

javascript/ql/src/semmle/javascript/frameworks/ClosureLibrary.qll

Lines changed: 2 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -35,16 +35,14 @@ module ClosureLibrary {
3535
name = "trim" or
3636
name = "trimLeft" or
3737
name = "trimRight" or
38+
name = "truncate" or
39+
name = "truncateMiddle" or
3840
name = "unescapeEntities" or
3941
name = "urlDecode" or
4042
name = "urlEncode" or
4143
name = "whitespaceEscape"
4244
)
4345
or
44-
(name = "truncate" or name = "truncateMiddle") and
45-
pred = getArgument(0) and
46-
not getArgument(1).getIntValue() < 8 // length of <script>
47-
or
4846
name = "unescapeEntitiesWithDocument" and
4947
pred = getArgument(0)
5048
)

0 commit comments

Comments
 (0)