Skip to main content

Function: containsNoSQLInjection()

containsNoSQLInjection(input): ThreatFinding[]
Defined in: validators.ts:280 Detect NoSQL-injection patterns — Mongo-style operator injection ($where, $ne, $regex), JavaScript-in-query payloads, and structural manipulators that can bypass auth filters in document stores.

Parameters

input

string String to scan.

Returns

ThreatFinding[] Empty array, or one finding of type "nosql_injection".