Unsanitized user input in format string
Overview
Description
Remediation Guidelines
console.log(`The value was ${req.params.value}`); // unsafeconsole.log('The value was %s', req.params.value); // safe
References
Configuration
PreviousUnsanitized User Input in File Path TraversalNextUnsanitized user input in HTTP request (SSRF)
Last updated