Java: Allow taint-read-steps for array sources.

This commit is contained in:
Anders Schack-Mulligen
2025-10-07 10:10:02 +02:00
parent 402d58bc3a
commit 11665bea0a

View File

@@ -655,6 +655,8 @@ private SrcRefType entrypointType() {
)
or
result = entrypointType().getAField().getType().(RefType).getSourceDeclaration()
or
result = entrypointType().(Array).getElementType().(RefType).getSourceDeclaration()
}
private predicate entrypointFieldStep(DataFlow::Node src, DataFlow::Node sink) {