mirror of
https://github.com/projectdiscovery/nuclei.git
synced 2025-12-22 10:55:28 +00:00
* add default get method * remove residual payload logic from old implementation * fuzz: clone current state of component * fuzz: bug fix stacking of payloads in multiple mode * improve stdout template loading stats * stdout: force display warnings if no templates are loaded * update flags in README.md * quote non-ascii chars in extractor output * aws request signature can only be used in signed & verified tmpls * deprecate request signature * remove logic related to deprecated fuzzing input * update test to use ordered params * fix interactsh-url lazy eval: #4946 * output: skip unnecessary updates when unescaping * updates as per requested changes
103 lines
2.3 KiB
Go
103 lines
2.3 KiB
Go
package component
|
|
|
|
import (
|
|
"context"
|
|
|
|
"github.com/pkg/errors"
|
|
"github.com/projectdiscovery/nuclei/v3/pkg/fuzz/dataformat"
|
|
"github.com/projectdiscovery/retryablehttp-go"
|
|
urlutil "github.com/projectdiscovery/utils/url"
|
|
)
|
|
|
|
// Query is a component for a request query
|
|
type Query struct {
|
|
value *Value
|
|
|
|
req *retryablehttp.Request
|
|
}
|
|
|
|
var _ Component = &Query{}
|
|
|
|
// NewQuery creates a new query component
|
|
func NewQuery() *Query {
|
|
return &Query{}
|
|
}
|
|
|
|
// Name returns the name of the component
|
|
func (q *Query) Name() string {
|
|
return RequestQueryComponent
|
|
}
|
|
|
|
// Parse parses the component and returns the
|
|
// parsed component
|
|
func (q *Query) Parse(req *retryablehttp.Request) (bool, error) {
|
|
if req.URL.Query().IsEmpty() {
|
|
return false, nil
|
|
}
|
|
q.req = req
|
|
|
|
q.value = NewValue(req.URL.Query().Encode())
|
|
|
|
parsed, err := dataformat.Get(dataformat.FormDataFormat).Decode(q.value.String())
|
|
if err != nil {
|
|
return false, err
|
|
}
|
|
q.value.SetParsed(parsed, dataformat.FormDataFormat)
|
|
return true, nil
|
|
}
|
|
|
|
// Iterate iterates through the component
|
|
func (q *Query) Iterate(callback func(key string, value interface{}) error) (errx error) {
|
|
q.value.parsed.Iterate(func(key string, value interface{}) bool {
|
|
if err := callback(key, value); err != nil {
|
|
errx = err
|
|
return false
|
|
}
|
|
return true
|
|
})
|
|
return
|
|
}
|
|
|
|
// SetValue sets a value in the component
|
|
// for a key
|
|
func (q *Query) SetValue(key string, value string) error {
|
|
if !q.value.SetParsedValue(key, value) {
|
|
return ErrSetValue
|
|
}
|
|
return nil
|
|
}
|
|
|
|
// Delete deletes a key from the component
|
|
func (q *Query) Delete(key string) error {
|
|
if !q.value.Delete(key) {
|
|
return ErrKeyNotFound
|
|
}
|
|
return nil
|
|
}
|
|
|
|
// Rebuild returns a new request with the
|
|
// component rebuilt
|
|
func (q *Query) Rebuild() (*retryablehttp.Request, error) {
|
|
encoded, err := q.value.Encode()
|
|
if err != nil {
|
|
return nil, errors.Wrap(err, "could not encode query")
|
|
}
|
|
cloned := q.req.Clone(context.Background())
|
|
cloned.URL.RawQuery = encoded
|
|
|
|
// Clear the query parameters and re-add them
|
|
cloned.Params = nil
|
|
cloned.Params = urlutil.NewOrderedParams()
|
|
cloned.Params.Decode(encoded)
|
|
cloned.Update()
|
|
return cloned, nil
|
|
}
|
|
|
|
// Clones current state to a new component
|
|
func (q *Query) Clone() Component {
|
|
return &Query{
|
|
value: q.value.Clone(),
|
|
req: q.req.Clone(context.Background()),
|
|
}
|
|
}
|