2020-06-30 12:49:37 +02:00
|
|
|
include::../description.adoc[]
|
|
|
|
|
|
|
|
include::../ask-yourself.adoc[]
|
|
|
|
|
|
|
|
include::../recommended.adoc[]
|
|
|
|
|
|
|
|
== Sensitive Code Example
|
|
|
|
|
|
|
|
----
|
|
|
|
Dim client As System.Net.Http.HttpClient
|
|
|
|
' All the following are Sensitive
|
|
|
|
client.GetAsync(...)
|
|
|
|
client.GetByteArrayAsync(...)
|
|
|
|
client.GetStreamAsync(...)
|
|
|
|
client.GetStringAsync(...)
|
|
|
|
client.SendAsync(...)
|
|
|
|
client.PostAsync(...)
|
|
|
|
client.PutAsync(...)
|
|
|
|
client.DeleteAsync(...)
|
|
|
|
|
|
|
|
|
|
|
|
Dim webclient As System.Net.WebClient
|
|
|
|
' All the following are Sensitive, although they may be false positives if the URI scheme is "ftp" or "file"
|
|
|
|
webclient.Download*(...) ' Any method starting with "Download"
|
|
|
|
webclient.Open*(...) ' Any method starting with "Open"
|
|
|
|
webclient.Upload*(...) ' Any method starting with "Upload"
|
|
|
|
|
|
|
|
' All the following are Sensitive, although they may be false positives if the URI scheme is "ftp" or "file"
|
|
|
|
System.Net.WebRequest.Create(...)
|
|
|
|
System.Net.WebRequest.CreateDefault(...)
|
|
|
|
|
|
|
|
' The following is always Sensitive
|
|
|
|
System.Net.WebRequest.CreateHttp(...)
|
|
|
|
|
|
|
|
' === RestSharp ===
|
|
|
|
' Sensitive, as well as any other instantiation of the RestSharp.IRestRequest interface.
|
|
|
|
Dim rsRequest = new RestSharp.RestRequest(...)
|
|
|
|
----
|
|
|
|
|
|
|
|
include::../see.adoc[]
|
2021-06-02 20:44:38 +02:00
|
|
|
|
2021-06-03 09:05:38 +02:00
|
|
|
ifdef::env-github,rspecator-view[]
|
2021-09-20 15:38:42 +02:00
|
|
|
|
|
|
|
'''
|
|
|
|
== Implementation Specification
|
|
|
|
(visible only on this page)
|
|
|
|
|
|
|
|
include::../message.adoc[]
|
|
|
|
|
2021-06-08 15:52:13 +02:00
|
|
|
'''
|
2021-06-02 20:44:38 +02:00
|
|
|
== Comments And Links
|
|
|
|
(visible only on this page)
|
|
|
|
|
|
|
|
include::../comments-and-links.adoc[]
|
2023-06-22 10:38:01 +02:00
|
|
|
|
2021-06-03 09:05:38 +02:00
|
|
|
endif::env-github,rspecator-view[]
|