From 772c141d7b77ef947e2feb85b6ea95992c75eda1 Mon Sep 17 00:00:00 2001 From: "pixeebot[bot]" <104101892+pixeebot[bot]@users.noreply.github.com> Date: Thu, 16 Jan 2025 12:15:50 +0000 Subject: [PATCH 1/2] Use Safe Parameters in `flask` Response `set_cookie` Call --- src/core_codemods/delete_me.py | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/src/core_codemods/delete_me.py b/src/core_codemods/delete_me.py index e9c13c77..d319f421 100644 --- a/src/core_codemods/delete_me.py +++ b/src/core_codemods/delete_me.py @@ -2,8 +2,8 @@ response = flask.make_response() var = "hello" -response.set_cookie("name", "value") +response.set_cookie("name", "value", secure=True, httponly=True, samesite='Lax') response2 = flask.Response() var = "hello" -response2.set_cookie("name", "value") +response2.set_cookie("name", "value", secure=True, httponly=True, samesite='Lax') From 64e20857f403f117c2e60f5581f83ea2f3c31b8b Mon Sep 17 00:00:00 2001 From: "pixeebot[bot]" <104101892+pixeebot[bot]@users.noreply.github.com> Date: Thu, 16 Jan 2025 12:16:02 +0000 Subject: [PATCH 2/2] :art: Apply formatting --- src/core_codemods/delete_me.py | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/src/core_codemods/delete_me.py b/src/core_codemods/delete_me.py index d319f421..4a3a872f 100644 --- a/src/core_codemods/delete_me.py +++ b/src/core_codemods/delete_me.py @@ -2,8 +2,8 @@ response = flask.make_response() var = "hello" -response.set_cookie("name", "value", secure=True, httponly=True, samesite='Lax') +response.set_cookie("name", "value", secure=True, httponly=True, samesite="Lax") response2 = flask.Response() var = "hello" -response2.set_cookie("name", "value", secure=True, httponly=True, samesite='Lax') +response2.set_cookie("name", "value", secure=True, httponly=True, samesite="Lax")