mirror of
https://github.com/github/codeql.git
synced 2026-04-30 19:26:02 +02:00
Added @sap/hdbext.loadProccedure as sql sink.
This commit is contained in:
@@ -4,5 +4,5 @@ extensions:
|
||||
extensible: sinkModel
|
||||
data:
|
||||
- ["@sap/hana-client", "Member[createConnection].ReturnValue.Member[exec,prepare].Argument[0]", "sql-injection"]
|
||||
|
||||
- ["hdb", "Member[createClient].ReturnValue.Member[exec,prepare,execute].Argument[0]", "sql-injection"]
|
||||
- ["@sap/hdbext", "Member[loadProcedure].Argument[2]", "sql-injection"]
|
||||
|
||||
Reference in New Issue
Block a user