From b688df9dec0f9638db81a58eefb7067e28702df6 Mon Sep 17 00:00:00 2001 From: =?UTF-8?q?Nora=20Dimitrijevi=C4=87?= Date: Wed, 16 Jul 2025 15:33:38 +0200 Subject: [PATCH] [DIFF-INFORMED] Java: LogInjection https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/java/ql/src/Security/CWE/CWE-117/LogInjection.ql#L20 --- java/ql/lib/semmle/code/java/security/LogInjectionQuery.qll | 4 ++++ 1 file changed, 4 insertions(+) diff --git a/java/ql/lib/semmle/code/java/security/LogInjectionQuery.qll b/java/ql/lib/semmle/code/java/security/LogInjectionQuery.qll index 64d59993b3d..c34ba0e4849 100644 --- a/java/ql/lib/semmle/code/java/security/LogInjectionQuery.qll +++ b/java/ql/lib/semmle/code/java/security/LogInjectionQuery.qll @@ -19,6 +19,10 @@ module LogInjectionConfig implements DataFlow::ConfigSig { } predicate isBarrierIn(DataFlow::Node node) { isSource(node) } + + predicate observeDiffInformedIncrementalMode() { + none() // straightforward case; but the large test source is causing OOMs under `--check-diff-informed`. + } } /**