Skip to content

Updating javascript ssrf wkhtmltoimage rule and tests

Bhavya Kaushal requested to merge js-ssrf into main

What does this MR do?

  1. Changes rule patterns to use taint mode and add sanitizer pattern
  2. Updates message to add better description, mitigation and secure code example
  3. Updates metadata
  4. Updates Test cases

What are the relevant issue numbers?

Addresses issue: Enhance sast-rules lgpl\javascript\ssrf\rule-wk... (gitlab-org/gitlab#440632 - closed) • Bhavya Kaushal

Does this MR meet the acceptance criteria?

Edited by Adam Cohen

Merge request reports