Fix typos

Co-authored-by: Tony Torralba <atorralba@users.noreply.github.com>
This commit is contained in:
Edward Minnix III
2023-12-04 23:04:17 -05:00
committed by Ed Minnix
parent 51006aa088
commit 1f37e70d83
2 changed files with 2 additions and 2 deletions

View File

@@ -27,7 +27,7 @@ module ExecTaintedEnvironmentConfig implements DataFlow::ConfigSig {
predicate isSink(DataFlow::Node sink) {
sinkNode(sink, "environment-injection")
or
// sink is an added to a `ProcessBuilder::environment` map.
// sink is a key or value added to a `ProcessBuilder::environment` map.
exists(MapMutation mm | mm.getAnArgument() = sink.asExpr() |
ProcessBuilderEnvironmentFlow::flowToExpr(mm.getQualifier())
)

View File

@@ -7,7 +7,7 @@
* @precision medium
* @id java/exec-tainted-environment
* @tags security
* external/cwe/cwe-078
* external/cwe/cwe-078
* external/cwe/cwe-088
*/