mirror of
https://github.com/github/codeql.git
synced 2026-04-25 16:55:19 +02:00
Merge pull request #9127 from atorralba/atorralba/sensitive-info-log-improvs
Java: Sensitive Info Log query improvements
This commit is contained in:
@@ -5,12 +5,18 @@ class Test {
|
||||
Logger logger = null;
|
||||
|
||||
logger.info("User's password is: " + password); // $ hasTaintFlow
|
||||
}
|
||||
}
|
||||
|
||||
void test2(String authToken) {
|
||||
Logger logger = null;
|
||||
|
||||
logger.error("Auth failed for: " + authToken); // $ hasTaintFlow
|
||||
logger.error("Auth failed for: " + authToken); // $ hasTaintFlow
|
||||
}
|
||||
|
||||
}
|
||||
void test3(String username) {
|
||||
Logger logger = null;
|
||||
|
||||
logger.error("Auth failed for: " + username); // Safe
|
||||
}
|
||||
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user