Replace open-url sink kinds with request-forgery

This commit is contained in:
Tony Torralba
2023-06-14 09:59:59 +02:00
parent 73d2ab7d66
commit 8bafc22add

View File

@@ -5,8 +5,8 @@ extensions:
pack: codeql/java-all
extensible: sinkModel
data:
- ["net.sf.json.groovy", "JsonSlurper", true, "parse", "(String)", "", "Argument[0]", "open-url", "df-generated"]
- ["net.sf.json.groovy", "JsonSlurper", true, "parse", "(URL)", "", "Argument[0]", "open-url", "df-generated"]
- ["net.sf.json.groovy", "JsonSlurper", true, "parse", "(String)", "", "Argument[0]", "request-forgery", "df-generated"]
- ["net.sf.json.groovy", "JsonSlurper", true, "parse", "(URL)", "", "Argument[0]", "request-forgery", "df-generated"]
- addsTo:
pack: codeql/java-all
extensible: summaryModel