2020-08-25 23:57:08 +00:00
|
|
|
/**
|
|
|
|
* @fileoverview Rule to flag when using javascript: urls
|
|
|
|
* @author Ilya Volodin
|
|
|
|
*/
|
2022-11-10 10:43:16 +00:00
|
|
|
/* eslint no-script-url: 0 -- Code is checking to report such URLs */
|
2020-08-25 23:57:08 +00:00
|
|
|
|
|
|
|
"use strict";
|
|
|
|
|
2021-02-26 03:58:33 +00:00
|
|
|
const astUtils = require("./utils/ast-utils");
|
|
|
|
|
2020-08-25 23:57:08 +00:00
|
|
|
//------------------------------------------------------------------------------
|
|
|
|
// Rule Definition
|
|
|
|
//------------------------------------------------------------------------------
|
|
|
|
|
2022-11-10 10:43:16 +00:00
|
|
|
/** @type {import('../shared/types').Rule} */
|
2020-08-25 23:57:08 +00:00
|
|
|
module.exports = {
|
|
|
|
meta: {
|
|
|
|
type: "suggestion",
|
|
|
|
|
|
|
|
docs: {
|
2022-11-10 10:43:16 +00:00
|
|
|
description: "Disallow `javascript:` urls",
|
2020-08-25 23:57:08 +00:00
|
|
|
recommended: false,
|
2024-03-28 02:00:41 +00:00
|
|
|
url: "https://eslint.org/docs/latest/rules/no-script-url"
|
2020-08-25 23:57:08 +00:00
|
|
|
},
|
|
|
|
|
|
|
|
schema: [],
|
|
|
|
|
|
|
|
messages: {
|
|
|
|
unexpectedScriptURL: "Script URL is a form of eval."
|
|
|
|
}
|
|
|
|
},
|
|
|
|
|
|
|
|
create(context) {
|
|
|
|
|
2021-02-26 03:58:33 +00:00
|
|
|
/**
|
|
|
|
* Check whether a node's static value starts with "javascript:" or not.
|
|
|
|
* And report an error for unexpected script URL.
|
|
|
|
* @param {ASTNode} node node to check
|
|
|
|
* @returns {void}
|
|
|
|
*/
|
|
|
|
function check(node) {
|
|
|
|
const value = astUtils.getStaticStringValue(node);
|
|
|
|
|
|
|
|
if (typeof value === "string" && value.toLowerCase().indexOf("javascript:") === 0) {
|
|
|
|
context.report({ node, messageId: "unexpectedScriptURL" });
|
|
|
|
}
|
|
|
|
}
|
2020-08-25 23:57:08 +00:00
|
|
|
return {
|
|
|
|
Literal(node) {
|
|
|
|
if (node.value && typeof node.value === "string") {
|
2021-02-26 03:58:33 +00:00
|
|
|
check(node);
|
|
|
|
}
|
|
|
|
},
|
|
|
|
TemplateLiteral(node) {
|
|
|
|
if (!(node.parent && node.parent.type === "TaggedTemplateExpression")) {
|
|
|
|
check(node);
|
2020-08-25 23:57:08 +00:00
|
|
|
}
|
|
|
|
}
|
|
|
|
};
|
|
|
|
}
|
|
|
|
};
|