**Motivations:** - Complete documentation for dashboard, domains, ports and environment configuration - Add new services (ClamAV API, Watermark API) to the infrastructure - Enhance dashboard with new pages and improved functionality - Improve deployment scripts and service configurations **Root causes:** - Missing comprehensive documentation for infrastructure setup - Need for antivirus scanning service integration - Need for watermark service integration - Dashboard required additional pages and features **Correctifs:** - Added comprehensive documentation in docs/ (DASHBOARD.md, DOMAINS_AND_PORTS.md, ENVIRONMENT.md) - Updated systemd service files with proper environment variables - Enhanced nginx proxy configuration script - Updated maintenance documentation **Evolutions:** - Added new ClamAV API service (api-clamav) for file scanning - Added new Watermark API service (api-filigrane) for document watermarking - Enhanced signet-dashboard with new learn.html page - Improved dashboard UI with better styles and navigation - Enhanced app.js with new functionality and better error handling - Updated API documentation page with complete endpoint descriptions - Added deployment scripts for watermark and nginx configuration - Updated hash and UTXO lists with latest data - Enhanced server.js with new routes and improved Bitcoin RPC integration **Pages affectées:** - docs/DASHBOARD.md: New comprehensive dashboard documentation - docs/DOMAINS_AND_PORTS.md: New infrastructure domains and ports documentation - docs/ENVIRONMENT.md: New environment variables documentation - docs/MAINTENANCE.md: Updated maintenance procedures - docs/README.md: Updated main documentation - signet-dashboard/public/app.js: Enhanced with new features - signet-dashboard/public/styles.css: Improved styling - signet-dashboard/public/index.html: Enhanced main page - signet-dashboard/public/learn.html: New educational page - signet-dashboard/public/api-docs.html: Enhanced API documentation - signet-dashboard/public/hash-list.html: Updated hash list page - signet-dashboard/public/utxo-list.html: Updated UTXO list page - signet-dashboard/public/join-signet.html: Updated join signet page - signet-dashboard/src/server.js: Enhanced server with new routes - signet-dashboard/start.sh: Updated startup script - signet-dashboard/signet-dashboard.service: Updated systemd service - api-anchorage/anchorage-api.service: Updated systemd service - api-faucet/faucet-api.service: Updated systemd service - configure-nginx-proxy.sh: Enhanced nginx configuration script - add-watermark-certificate.sh: New watermark certificate script - deploy-watermark-nginx.sh: New deployment script - api-clamav/: New ClamAV API service - api-filigrane/: New Watermark API service - hash_list.txt, utxo_list.txt: Updated with latest data - anchor_count.txt: Updated anchor count
65 lines
1.7 KiB
JavaScript
65 lines
1.7 KiB
JavaScript
'use strict';
|
|
|
|
/* eslint no-proto: 0 */
|
|
|
|
var parse = require('../');
|
|
var test = require('tape');
|
|
|
|
test('proto pollution', function (t) {
|
|
var argv = parse(['--__proto__.x', '123']);
|
|
t.equal({}.x, undefined);
|
|
t.equal(argv.__proto__.x, undefined);
|
|
t.equal(argv.x, undefined);
|
|
t.end();
|
|
});
|
|
|
|
test('proto pollution (array)', function (t) {
|
|
var argv = parse(['--x', '4', '--x', '5', '--x.__proto__.z', '789']);
|
|
t.equal({}.z, undefined);
|
|
t.deepEqual(argv.x, [4, 5]);
|
|
t.equal(argv.x.z, undefined);
|
|
t.equal(argv.x.__proto__.z, undefined);
|
|
t.end();
|
|
});
|
|
|
|
test('proto pollution (number)', function (t) {
|
|
var argv = parse(['--x', '5', '--x.__proto__.z', '100']);
|
|
t.equal({}.z, undefined);
|
|
t.equal((4).z, undefined);
|
|
t.equal(argv.x, 5);
|
|
t.equal(argv.x.z, undefined);
|
|
t.end();
|
|
});
|
|
|
|
test('proto pollution (string)', function (t) {
|
|
var argv = parse(['--x', 'abc', '--x.__proto__.z', 'def']);
|
|
t.equal({}.z, undefined);
|
|
t.equal('...'.z, undefined);
|
|
t.equal(argv.x, 'abc');
|
|
t.equal(argv.x.z, undefined);
|
|
t.end();
|
|
});
|
|
|
|
test('proto pollution (constructor)', function (t) {
|
|
var argv = parse(['--constructor.prototype.y', '123']);
|
|
t.equal({}.y, undefined);
|
|
t.equal(argv.y, undefined);
|
|
t.end();
|
|
});
|
|
|
|
test('proto pollution (constructor function)', function (t) {
|
|
var argv = parse(['--_.concat.constructor.prototype.y', '123']);
|
|
function fnToBeTested() {}
|
|
t.equal(fnToBeTested.y, undefined);
|
|
t.equal(argv.y, undefined);
|
|
t.end();
|
|
});
|
|
|
|
// powered by snyk - https://github.com/backstage/backstage/issues/10343
|
|
test('proto pollution (constructor function) snyk', function (t) {
|
|
var argv = parse('--_.constructor.constructor.prototype.foo bar'.split(' '));
|
|
t.equal(function () {}.foo, undefined);
|
|
t.equal(argv.y, undefined);
|
|
t.end();
|
|
});
|