CodeQL Cheatsheets
Home
Tags
C++
C#
Javascript
Java
Go
Python
Ruby
About

All posts for tag "javascript"

  • javascript
  • Call to function
  • Callbacks
  • Class with implicit default constructor
  • Constant property name in `[]` property access
  • Declaration of variable
  • Decoding after sanitization (generalized)
  • Decoding after sanitization
  • Default exports exporting a function
  • Empty block
  • Empty yield
  • Equalities as expression statement
  • Extension of standard query: Stored XSS (with TrackedNode)
  • Extension of standard query: Stored XSS
  • File with given name
  • Find class
  • Find-references links
  • Functions with many parameters
  • Functions without return statements
  • Generator functions (function* foo(...))
  • IDOR through request to backend service
  • If statements with empty then branch
  • Immediately invoked function expressions
  • Imports from 'react'
  • Information disclosure through postMessage
  • JSX attributes
  • Jump-to-definition links
  • Method calls
  • Method search
  • Named function expression
  • New expressions
  • Parameters searched by name
  • Print source code AST
  • Property accesses
  • References of a variable by name
  • Single-quoted string literals
  • Singleton blocks
  • Tagged templates
  • Taint-tracking to 'eval' calls (with path visualization)
  • Taint-tracking to 'eval' calls
  • Template injection
  • Tests for even numbers
  • TODO comments

CodeQL Cheatsheets, QL For Everyone

A Product from CodeQL Agent Project

Simplifying the use of CodeQL.