We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent a91cf6b commit 4bb110bCopy full SHA for 4bb110b
1 file changed
python/ql/test/query-tests/Security/CWE-918-ServerSideRequestForgery/test_requests.py
@@ -19,14 +19,14 @@ def ssrf_test2():
19
def ssrf_test3():
20
user_input = request.args['untrusted_input']
21
# NOT OK -- user has full control
22
- response = requests.request('<method>', user_input) # $ Alert[py/full-ssrf]
+ requests.request('<method>', user_input) # $ Alert[py/full-ssrf]
23
24
def ssrf_test_with_policy1():
25
26
policy = AntiSSRFPolicy()
27
session = policy.get_antissrf_session()
28
# OK -- dangerous user input is filtered by AntiSSRFPolicy
29
- response = session.get(user_input)
+ session.get(user_input)
30
31
def ssrf_test_with_policy2():
32
0 commit comments