Skip to content

Commit be9c9ab

Browse files
committed
fix(iast): cookie vulnerability cardinality issues
1 parent 86ab6a5 commit be9c9ab

File tree

1 file changed

+7
-8
lines changed

1 file changed

+7
-8
lines changed

tests/appsec/iast/taint_sinks/test_insecure_cookie.py

Lines changed: 7 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -231,16 +231,13 @@ def test_insecure_cookies_exclusions_env_var_invalid_regex(iast_context_defaults
231231
"regex",
232232
[
233233
("|*"),
234-
("\|||\\\\\\\\\\"),
234+
("\\|||\\\\\\\\\\"),
235235
],
236236
)
237237
def test_insecure_cookies_exclusions_env_var_invalid_regex_with_exception(iast_context_defaults, caplog, regex):
238-
with override_global_config(
239-
dict(
240-
_iast_cookie_filter_pattern=regex,
241-
_iast_debug=True
242-
)
243-
), caplog.at_level(logging.DEBUG):
238+
with override_global_config(dict(_iast_cookie_filter_pattern=regex, _iast_debug=True)), caplog.at_level(
239+
logging.DEBUG
240+
):
244241
_start_iast_context_and_oce()
245242
cookies = {"session_id": "bar"}
246243
asm_check_cookies(cookies)
@@ -250,7 +247,9 @@ def test_insecure_cookies_exclusions_env_var_invalid_regex_with_exception(iast_c
250247
assert span_report is None
251248

252249
_end_iast_context_and_oce()
253-
assert any("[IAST] Propagation error. [IAST] error in asm_check_cookies" in record.message for record in caplog.records)
250+
assert any(
251+
"[IAST] Propagation error. [IAST] error in asm_check_cookies" in record.message for record in caplog.records
252+
)
254253

255254

256255
def test_insecure_cookies_deduplication(iast_context_deduplication_enabled):

0 commit comments

Comments
 (0)