SonarJS icon indicating copy to clipboard operation
SonarJS copied to clipboard

Resolve false postive in S5693 for multer storage engine init

Open pmckee11 opened this issue 1 year ago • 0 comments

The express multer middleware module has several member exports in addition to the main export. This change fixes the logic in S5693 so that it doesn't check for the content length limit parameter being passed to those members, since it's not applicable.

Googled a bit and have seen several folks in the community stumped by this false positive, e.g. https://stackoverflow.com/questions/76305839/sonar-security-warning-for-multer-express-js

pmckee11 avatar Sep 25 '24 01:09 pmckee11