-
Notifications
You must be signed in to change notification settings - Fork 8
/
get-by-vuln.test.js
66 lines (59 loc) · 1.83 KB
/
get-by-vuln.test.js
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
const test = require('tap-only');
const fixtures = __dirname + '/../fixtures';
const fs = require('promise-fs');
const getByVuln = require('../../lib/match').getByVuln;
const loadFromText = require('../../').loadFromText;
const policy = require(fixtures + '/ignore/parsed.json');
const vulns = require(fixtures + '/ignore/vulns.json');
test('getByVuln (no args)', function (t) {
const res = getByVuln();
t.equal(res, null, 'no args means null');
t.end();
});
test('getByVuln (no vulns)', function (t) {
const res = getByVuln(policy);
t.equal(res, null, 'no args means null');
t.end();
});
test('getByVuln', function (t) {
const res = vulns.vulnerabilities.map(getByVuln.bind(null, policy));
res.forEach(function (res, i) {
t.equals(res.type, 'ignore', 'expect ignore for ' + res.id);
t.equals(res.id, vulns.vulnerabilities[i].id, 'matched id: ' + res.id);
});
t.end();
});
test('getByVuln with star rules', function (t) {
const id = 'npm:hawk:20160119';
const vuln = vulns.vulnerabilities
.filter(function (v) {
return v.id === id;
})
.pop();
return fs
.readFile(fixtures + '/star-rule.txt', 'utf8')
.then(loadFromText)
.then(function (policy) {
const res = getByVuln(policy, vuln);
t.equal(res.id, id, 'found the vuln');
t.ok(res.rule.length > 0, 'rule has length');
t.ok(true);
});
});
test('getByVuln with exact match rules', function (t) {
const id = 'npm:hawk:20160119';
const vuln = vulns.vulnerabilities
.filter(function (v) {
return v.id === id;
})
.pop();
return fs
.readFile(fixtures + '/exact-rule.txt', 'utf8')
.then(loadFromText)
.then(function (policy) {
const res = getByVuln(policy, vuln);
t.equal(res.id, id, 'found the vuln');
t.ok(res.rule.length > 0, 'rule has length');
t.ok(true);
});
});