diff --git a/ webgoat/main/project/WebContent/lessons/Ajax/instructor/clientSideFiltering_i.jsp b/ webgoat/main/project/WebContent/lessons/Ajax/instructor/clientSideFiltering_i.jsp index 9de07fcf8..e6217ecb6 100644 --- a/ webgoat/main/project/WebContent/lessons/Ajax/instructor/clientSideFiltering_i.jsp +++ b/ webgoat/main/project/WebContent/lessons/Ajax/instructor/clientSideFiltering_i.jsp @@ -28,17 +28,17 @@ String userId = request.getParameter("userId"); InputSource inputSource = new InputSource(new FileInputStream(d)); -StringBuffer sb = new StringBuffer(); - -sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/UserID | "); -sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/FirstName | "); -sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/LastName | "); -sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/SSN | "); -sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/Salary "); - -String expression = sb.toString(); - - + StringBuffer sb = new StringBuffer(); + + sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/UserID | "); + sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/FirstName | "); + sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/LastName | "); + sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/SSN | "); + sb.append("/Employees/Employee [Managers/Manager/text()='" + userId + "']/Salary "); + + String expression = sb.toString(); + + System.out.print("expression:" + expression);