Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

False Positive javascript.express_xss #3339

Open
1 task
aviramshm opened this issue Mar 12, 2024 · 0 comments
Open
1 task

False Positive javascript.express_xss #3339

aviramshm opened this issue Mar 12, 2024 · 0 comments
Labels
bug Something isn't working

Comments

@aviramshm
Copy link

aviramshm commented Mar 12, 2024

Describe the bug
express_xss is detected in a code that has sanitization

To Reproduce
https://semgrep.dev/playground/r/x8UKwxb/767vnb.express_xss

Expected behavior
No detection

What is the priority of the bug to you?

  • P1: important to fix or quite annoying

Environment
Using semgrep.dev

Use case
What will fixing this bug enable for you?
Better detection, less noise

@ievans ievans transferred this issue from semgrep/semgrep Mar 15, 2024
@ievans ievans added the bug Something isn't working label Mar 15, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Development

No branches or pull requests

2 participants