Python: fix test expectations, add missing sanitizer

This commit is contained in:
Rasmus Lerchedahl Petersen
2024-06-26 13:27:32 +02:00
parent b261145f43
commit a3076f4f72
4 changed files with 18 additions and 1 deletions

View File

@@ -45,6 +45,7 @@ module UnsafeShellCommandConstructionConfig implements DataFlow::ConfigSig {
predicate isSink(DataFlow::Node sink) { sink instanceof Sink }
predicate isBarrier(DataFlow::Node node) {
node instanceof Sanitizer or
node instanceof CommandInjection::Sanitizer // using all sanitizers from `py/command-injection`
}