mirror of
https://github.com/github/codeql.git
synced 2026-04-25 16:55:19 +02:00
Ruby: Add changenote
This commit is contained in:
4
ruby/ql/lib/change-notes/2024-02-12-raw-erb-output.md
Normal file
4
ruby/ql/lib/change-notes/2024-02-12-raw-erb-output.md
Normal file
@@ -0,0 +1,4 @@
|
||||
---
|
||||
category: minorAnalysis
|
||||
---
|
||||
* Raw output ERB tags of the form `<%== ... %>` are now recognised as cross-site scripting sinks.
|
||||
Reference in New Issue
Block a user