1
0
mirror of https://github.com/danog/psalm.git synced 2024-12-12 09:19:40 +01:00
psalm/docs/running_psalm/issues/TaintedXpath.md
2023-11-22 11:10:23 +01:00

251 B

TaintedXpath

Emitted when user-controlled input can be passed into a xpath query.

<?php

function queryExpression(SimpleXMLElement $xml) : array|false|null {
    $expression = $_GET["expression"];
    return $xml->xpath($expression);
}