add test and change-note to prototype-polution

This commit is contained in:
Erik Krogh Kristensen
2020-05-05 13:49:11 +02:00
parent 38db731e0b
commit bffb12725b
4 changed files with 77 additions and 1 deletions

View File

@@ -24,7 +24,7 @@ import semmle.javascript.DynamicPropertyAccess
class SplitCall extends StringSplitCall {
SplitCall() {
getSeparator() = "." and
getBaseString() instanceof ParameterNode
getBaseString().getALocalSource() instanceof ParameterNode
}
}