From 529264239f46165c0cb75f1ee42c9fb7e3494156 Mon Sep 17 00:00:00 2001 From: Michael Hohn Date: Thu, 10 Jul 2025 13:10:28 -0700 Subject: [PATCH] wip: add illustration comment --- codeql-sqlite/Illustrations.ql | 3 +++ 1 file changed, 3 insertions(+) diff --git a/codeql-sqlite/Illustrations.ql b/codeql-sqlite/Illustrations.ql index 967b24d..1e104f9 100644 --- a/codeql-sqlite/Illustrations.ql +++ b/codeql-sqlite/Illustrations.ql @@ -1,6 +1,7 @@ /** * @name Illustrations * @description Illustrations of some codeql classes. + * @kind table */ import java @@ -11,5 +12,7 @@ import QueryInjectionFlow::PathGraph // Find starting points -- UserInput etc. -- from // ql/cpp/ql/src/Security/CWE/CWE-089/SqlTainted.ql +// using QueryInjectionSink shows a sink. So we're missing a source. + from UserInput ui, QueryInjectionSink qsi select ui, qsi