Add change notes

This commit is contained in:
Chris Smowton
2021-03-01 16:59:20 +00:00
parent cdccc1a064
commit 5d2f3421d8
4 changed files with 8 additions and 0 deletions

View File

@@ -0,0 +1,2 @@
lgtm,codescanning
* The data-flow library now recognises more side-effects of method chaining (e.g. `someObject.setX(clean).setY(tainted).setZ...` having a side-effect on `someObject`), as well as other related circumstances where a function input is directly passed to its output. All queries that use data-flow analysis, including most security queries, may return more results accordingly.