@@ -526,8 +526,8 @@ module XSS {
526526 this .getExpr ( ) = any ( WebPageClass h ) .getWriteLiteralMethod ( ) .getACall ( ) .getAnArgument ( )
527527 }
528528
529- override string explanation ( ) {
530- result = "System.Web.WebPages.WebPage.WriteLiteral() method"
529+ override string explanation ( ) {
530+ result = "System.Web.WebPages.WebPage.WriteLiteral() method"
531531 }
532532 }
533533
@@ -539,9 +539,9 @@ module XSS {
539539 WebPageWriteLiteralToSink ( ) {
540540 this .getExpr ( ) = any ( WebPageClass h ) .getWriteLiteralToMethod ( ) .getACall ( ) .getAnArgument ( )
541541 }
542-
543- override string explanation ( ) {
544- result = "System.Web.WebPages.WebPage.WriteLiteralTo() method"
542+
543+ override string explanation ( ) {
544+ result = "System.Web.WebPages.WebPage.WriteLiteralTo() method"
545545 }
546546 }
547547
@@ -555,9 +555,9 @@ module XSS {
555555 MicrosoftAspNetCoreMvcHtmlHelperRawSink ( ) {
556556 this .getExpr ( ) = any ( MicrosoftAspNetCoreMvcHtmlHelperClass h ) .getRawMethod ( ) .getACall ( ) .getAnArgument ( )
557557 }
558-
559- override string explanation ( ) {
560- result = "Microsoft.AspNetCore.Mvc.ViewFeatures.HtmlHelper.Raw() method"
558+
559+ override string explanation ( ) {
560+ result = "Microsoft.AspNetCore.Mvc.ViewFeatures.HtmlHelper.Raw() method"
561561 }
562562 }
563563
@@ -569,19 +569,19 @@ module XSS {
569569 MicrosoftAspNetRazorPageWriteLiteralSink ( ) {
570570 this .getExpr ( ) = any ( MicrosoftAspNetCoreMvcRazorPageBase h ) .getWriteLiteralMethod ( ) .getACall ( ) .getAnArgument ( )
571571 }
572-
573- override string explanation ( ) {
574- result = "Microsoft.AspNetCore.Mvc.Razor.RazorPageBase.WriteLiteral() method"
572+
573+ override string explanation ( ) {
574+ result = "Microsoft.AspNetCore.Mvc.Razor.RazorPageBase.WriteLiteral() method"
575575 }
576576 }
577-
577+
578578 /**
579579 * HtmlString that may be rendered as is need to have sanitized value
580580 */
581581 class MicrosoftAspNetHtmlStringSink extends AspNetCoreSink {
582582 MicrosoftAspNetHtmlStringSink ( ) {
583- exists ( ObjectCreation c , MicrosoftAspNetCoreHttpHtmlString s |
584- c .getTarget ( ) = s .getAConstructor ( ) and
583+ exists ( ObjectCreation c , MicrosoftAspNetCoreHttpHtmlString s |
584+ c .getTarget ( ) = s .getAConstructor ( ) and
585585 this .asExpr ( ) = c .getAnArgument ( ) )
586586 }
587587 }
0 commit comments