Merge pull request #1409 from esben-semmle/js/more-command-injection

Approved by xiemaisi
This commit is contained in:
semmle-qlci
2019-06-11 11:59:18 +01:00
committed by GitHub
5 changed files with 135 additions and 20 deletions

View File

@@ -0,0 +1,26 @@
# Improvements to JavaScript analysis
## General improvements
* Support for the following frameworks and libraries has been improved:
- [cross-spawn](https://www.npmjs.com/package/cross-spawn)
- [cross-spawn-async](https://www.npmjs.com/package/cross-spawn-async)
- [exec](https://www.npmjs.com/package/exec)
- [execa](https://www.npmjs.com/package/execa)
- [exec-async](https://www.npmjs.com/package/exec-async)
- [remote-exec](https://www.npmjs.com/package/remote-exec)
## New queries
| **Query** | **Tags** | **Purpose** |
|-----------|----------|-------------|
| | | |
## Changes to existing queries
| **Query** | **Expected impact** | **Change** |
|--------------------------------|------------------------------|---------------------------------------------------------------------------|
## Changes to QL libraries