webhook-action/node_modules/eslint-plugin-github/lib/rules/unescaped-html-literal.js

37 lines
774 B
JavaScript
Raw Normal View History

2022-11-10 10:43:16 +00:00
module.exports = {
meta: {
type: 'problem',
docs: {
description: 'disallow unescaped HTML literals',
url: require('../url')(module)
},
schema: []
},
2022-11-10 10:43:16 +00:00
create(context) {
const htmlOpenTag = /^<[a-zA-Z]/
const message = 'Unescaped HTML literal. Use html`` tag template literal for secure escaping.'
2022-11-10 10:43:16 +00:00
return {
Literal(node) {
if (!htmlOpenTag.test(node.value)) return
context.report({
node,
message
})
2022-11-10 10:43:16 +00:00
},
TemplateLiteral(node) {
if (!htmlOpenTag.test(node.quasis[0].value.raw)) return
if (!node.parent.tag || node.parent.tag.name !== 'html') {
context.report({
node,
message
})
}
}
}
}
}