CodeQL library for JavaScript
Search

Predicate ReflectedXss::nonHtmlContentTypeHeader

Holds if h may send a response with a content type other than HTML.

Import path

import semmle.javascript.security.dataflow.Xss
HeaderDefinition nonHtmlContentTypeHeader(RouteHandler h)