mirror of
https://github.com/github/codeql.git
synced 2026-04-30 19:26:02 +02:00
Python: Add basic taint modeling of tornado request
This commit is contained in:
@@ -15,27 +15,27 @@
|
||||
| taint_test.py:26 | ok | get | self.path_kwargs |
|
||||
| taint_test.py:27 | ok | get | self.path_kwargs["name"] |
|
||||
| taint_test.py:34 | ok | get | request |
|
||||
| taint_test.py:36 | fail | get | request.uri |
|
||||
| taint_test.py:37 | fail | get | request.path |
|
||||
| taint_test.py:38 | fail | get | request.query |
|
||||
| taint_test.py:39 | fail | get | request.full_url() |
|
||||
| taint_test.py:41 | fail | get | request.remote_ip |
|
||||
| taint_test.py:43 | fail | get | request.body |
|
||||
| taint_test.py:45 | fail | get | request.arguments |
|
||||
| taint_test.py:46 | fail | get | request.arguments["name"] |
|
||||
| taint_test.py:47 | fail | get | request.arguments["name"][0] |
|
||||
| taint_test.py:49 | fail | get | request.query_arguments |
|
||||
| taint_test.py:50 | fail | get | request.query_arguments["name"] |
|
||||
| taint_test.py:51 | fail | get | request.query_arguments["name"][0] |
|
||||
| taint_test.py:53 | fail | get | request.body_arguments |
|
||||
| taint_test.py:54 | fail | get | request.body_arguments["name"] |
|
||||
| taint_test.py:55 | fail | get | request.body_arguments["name"][0] |
|
||||
| taint_test.py:58 | fail | get | request.headers |
|
||||
| taint_test.py:59 | fail | get | request.headers["header-name"] |
|
||||
| taint_test.py:36 | ok | get | request.uri |
|
||||
| taint_test.py:37 | ok | get | request.path |
|
||||
| taint_test.py:38 | ok | get | request.query |
|
||||
| taint_test.py:39 | ok | get | request.full_url() |
|
||||
| taint_test.py:41 | ok | get | request.remote_ip |
|
||||
| taint_test.py:43 | ok | get | request.body |
|
||||
| taint_test.py:45 | ok | get | request.arguments |
|
||||
| taint_test.py:46 | ok | get | request.arguments["name"] |
|
||||
| taint_test.py:47 | ok | get | request.arguments["name"][0] |
|
||||
| taint_test.py:49 | ok | get | request.query_arguments |
|
||||
| taint_test.py:50 | ok | get | request.query_arguments["name"] |
|
||||
| taint_test.py:51 | ok | get | request.query_arguments["name"][0] |
|
||||
| taint_test.py:53 | ok | get | request.body_arguments |
|
||||
| taint_test.py:54 | ok | get | request.body_arguments["name"] |
|
||||
| taint_test.py:55 | ok | get | request.body_arguments["name"][0] |
|
||||
| taint_test.py:58 | ok | get | request.headers |
|
||||
| taint_test.py:59 | ok | get | request.headers["header-name"] |
|
||||
| taint_test.py:60 | fail | get | request.headers.get_list(..) |
|
||||
| taint_test.py:61 | fail | get | request.headers.get_all() |
|
||||
| taint_test.py:62 | fail | get | ListComp |
|
||||
| taint_test.py:65 | fail | get | request.cookies |
|
||||
| taint_test.py:66 | fail | get | request.cookies["cookie-name"] |
|
||||
| taint_test.py:65 | ok | get | request.cookies |
|
||||
| taint_test.py:66 | ok | get | request.cookies["cookie-name"] |
|
||||
| taint_test.py:67 | fail | get | request.cookies["cookie-name"].key |
|
||||
| taint_test.py:68 | fail | get | request.cookies["cookie-name"].value |
|
||||
|
||||
Reference in New Issue
Block a user