CPP:Only consider **argv as tainted.

This commit is contained in:
Alex Eyers-Taylor
2023-08-21 18:38:31 +01:00
parent 6573b1f772
commit a2f2b6c33f

View File

@@ -53,7 +53,7 @@ private class ArgvSource extends LocalFlowSource {
exists(Function main, Parameter argv |
main.hasGlobalName("main") and
main.getParameter(1) = argv and
this.asParameter(_) = argv
this.asParameter(2) = argv
)
}