diff --git a/jsonpath/jsonpath.go b/jsonpath/jsonpath.go index b41e393f..07e12305 100644 --- a/jsonpath/jsonpath.go +++ b/jsonpath/jsonpath.go @@ -87,7 +87,7 @@ func extractValue(currentKey string, value interface{}) interface{} { } } arrayIndex, err := strconv.Atoi(index) - if err != nil { + if err != nil || arrayIndex < 0 { return nil } currentKeyWithoutIndex := currentKey[:startOfBracket] diff --git a/jsonpath/jsonpath_test.go b/jsonpath/jsonpath_test.go index 83244c5c..8081dc68 100644 --- a/jsonpath/jsonpath_test.go +++ b/jsonpath/jsonpath_test.go @@ -174,6 +174,38 @@ func TestEval(t *testing.T) { ExpectedOutputLength: 18, ExpectedError: false, }, + { + Name: "negative-index-on-keyed-array", + Path: "data[-1]", + Data: `{"data": [1, 2, 3]}`, + ExpectedOutput: "", + ExpectedOutputLength: 0, + ExpectedError: true, + }, + { + Name: "negative-index-on-root-array", + Path: "[-1]", + Data: `[1, 2, 3]`, + ExpectedOutput: "", + ExpectedOutputLength: 0, + ExpectedError: true, + }, + { + Name: "negative-index-followed-by-key", + Path: "data[-1].name", + Data: `{"data": [{"name": "value"}]}`, + ExpectedOutput: "", + ExpectedOutputLength: 0, + ExpectedError: true, + }, + { + Name: "negative-index-nested-array", + Path: "data[0][-1]", + Data: `{"data": [[1, 2, 3]]}`, + ExpectedOutput: "", + ExpectedOutputLength: 0, + ExpectedError: true, + }, } for _, scenario := range scenarios { t.Run(scenario.Name, func(t *testing.T) {