diff --git a/codeql-sqlite/Illustrations.ql b/codeql-sqlite/Illustrations.ql index 967b24d..1e104f9 100644 --- a/codeql-sqlite/Illustrations.ql +++ b/codeql-sqlite/Illustrations.ql @@ -1,6 +1,7 @@ /** * @name Illustrations * @description Illustrations of some codeql classes. + * @kind table */ import java @@ -11,5 +12,7 @@ import QueryInjectionFlow::PathGraph // Find starting points -- UserInput etc. -- from // ql/cpp/ql/src/Security/CWE/CWE-089/SqlTainted.ql +// using QueryInjectionSink shows a sink. So we're missing a source. + from UserInput ui, QueryInjectionSink qsi select ui, qsi