Merge pull request #4733 from erik-krogh/args

Approved by esbena
This commit is contained in:
CodeQL CI
2020-12-16 06:51:26 -08:00
committed by GitHub
5 changed files with 345 additions and 14 deletions

View File

@@ -0,0 +1,9 @@
lgtm,codescanning
* The `js/indirect-command-line-injection` query now supports more command-line parsing libraries.
Affected packages are
[arg](https://www.npmjs.com/package/arg),
[argparse](https://www.npmjs.com/package/argparse),
[command-line-args](https://www.npmjs.com/package/command-line-args),
[meow](https://www.npmjs.com/package/meow),
[dashdash](https://www.npmjs.com/package/dashdash),
[commander](https://www.npmjs.com/package/commander).