Unsanitized user input in format string detected
Overview
Description
Remediation Guidelines
String.format(request.getParameter("foo"), "bar"); // unsafe String.format(Locale.US, request.getParameter("foo"), "bar"); // unsafeString.format("Strings: %s", request.getParameter("foo"), "bar"); String.format(Locale.US, "Strings: %s", request.getParameter("foo"), "bar");
References
Configuration
Last updated