diff --git a/java/ql/lib/change-notes/2022-12-05-insecure-cookie-global-flow.md b/java/ql/lib/change-notes/2022-12-05-insecure-cookie-global-flow.md new file mode 100644 index 00000000000..3eb33b8624e --- /dev/null +++ b/java/ql/lib/change-notes/2022-12-05-insecure-cookie-global-flow.md @@ -0,0 +1,4 @@ +--- +category: minorAnalysis +--- +* The query `java/insecure-cookie` now uses global dataflow to track secure cookies being set to the HTTP response object.