You can not select more than 25 topics
Topics must start with a letter or number, can include dashes ('-') and can be up to 35 characters long.
62 lines
1.7 KiB
62 lines
1.7 KiB
/** |
|
* @fileoverview Rule to flag when using javascript: urls |
|
* @author Ilya Volodin |
|
*/ |
|
/* jshint scripturl: true */ |
|
/* eslint no-script-url: 0 */ |
|
|
|
"use strict"; |
|
|
|
const astUtils = require("./utils/ast-utils"); |
|
|
|
//------------------------------------------------------------------------------ |
|
// Rule Definition |
|
//------------------------------------------------------------------------------ |
|
|
|
module.exports = { |
|
meta: { |
|
type: "suggestion", |
|
|
|
docs: { |
|
description: "disallow `javascript:` urls", |
|
category: "Best Practices", |
|
recommended: false, |
|
url: "https://eslint.org/docs/rules/no-script-url" |
|
}, |
|
|
|
schema: [], |
|
|
|
messages: { |
|
unexpectedScriptURL: "Script URL is a form of eval." |
|
} |
|
}, |
|
|
|
create(context) { |
|
|
|
/** |
|
* Check whether a node's static value starts with "javascript:" or not. |
|
* And report an error for unexpected script URL. |
|
* @param {ASTNode} node node to check |
|
* @returns {void} |
|
*/ |
|
function check(node) { |
|
const value = astUtils.getStaticStringValue(node); |
|
|
|
if (typeof value === "string" && value.toLowerCase().indexOf("javascript:") === 0) { |
|
context.report({ node, messageId: "unexpectedScriptURL" }); |
|
} |
|
} |
|
return { |
|
Literal(node) { |
|
if (node.value && typeof node.value === "string") { |
|
check(node); |
|
} |
|
}, |
|
TemplateLiteral(node) { |
|
if (!(node.parent && node.parent.type === "TaggedTemplateExpression")) { |
|
check(node); |
|
} |
|
} |
|
}; |
|
} |
|
};
|
|
|