mirror of
https://github.com/github/codeql.git
synced 2026-05-03 12:45:27 +02:00
Model UriInfo.relativize and resolve.
This commit is contained in:
@@ -196,7 +196,7 @@ public class JakartaRsFlow {
|
||||
sink(taint(ps2).getPath()); // $ hasTaintFlow
|
||||
}
|
||||
|
||||
void testUriInfo(UriInfo ui) {
|
||||
void testUriInfo(UriInfo ui, UriInfo untaintedUriInfo) throws Exception {
|
||||
ui = taint(ui);
|
||||
sink(ui.getPathParameters()); // $ hasTaintFlow
|
||||
sink(ui.getPathSegments()); // $ hasTaintFlow
|
||||
@@ -206,6 +206,11 @@ public class JakartaRsFlow {
|
||||
sink(ui.getQueryParameters().getFirst("someKey")); // $ hasTaintFlow
|
||||
sink(ui.getRequestUri()); // $ hasTaintFlow
|
||||
sink(ui.getRequestUriBuilder().build()); // $ hasTaintFlow
|
||||
URI taintedUri = UriSource.taint();
|
||||
URI untaintedUri = new URI("");
|
||||
sink(untaintedUriInfo.relativize(taintedUri)); // $ hasTaintFlow
|
||||
sink(untaintedUriInfo.resolve(taintedUri)); // $ hasTaintFlow
|
||||
sink(ui.resolve(untaintedUri)); // $ hasTaintFlow
|
||||
}
|
||||
|
||||
void testCookie() {
|
||||
|
||||
@@ -192,7 +192,7 @@ public class JaxRsFlow {
|
||||
sink(taint(ps2).getPath()); // $ hasTaintFlow
|
||||
}
|
||||
|
||||
void testUriInfo(UriInfo ui) {
|
||||
void testUriInfo(UriInfo ui, UriInfo untaintedUriInfo) throws Exception {
|
||||
ui = taint(ui);
|
||||
sink(ui.getPathParameters()); // $ hasTaintFlow
|
||||
sink(ui.getPathSegments()); // $ hasTaintFlow
|
||||
@@ -202,6 +202,11 @@ public class JaxRsFlow {
|
||||
sink(ui.getQueryParameters().getFirst("someKey")); // $ hasTaintFlow
|
||||
sink(ui.getRequestUri()); // $ hasTaintFlow
|
||||
sink(ui.getRequestUriBuilder().build()); // $ hasTaintFlow
|
||||
URI taintedUri = UriSource.taint();
|
||||
URI untaintedUri = new URI("");
|
||||
sink(untaintedUriInfo.relativize(taintedUri)); // $ hasTaintFlow
|
||||
sink(untaintedUriInfo.resolve(taintedUri)); // $ hasTaintFlow
|
||||
sink(ui.resolve(untaintedUri)); // $ hasTaintFlow
|
||||
}
|
||||
|
||||
void testCookie() {
|
||||
|
||||
Reference in New Issue
Block a user