RegexInjection docs

This commit is contained in:
Ed Minnix
2023-03-29 07:24:32 -04:00
parent 17cdd16c19
commit c8579d8c26

View File

@@ -31,4 +31,7 @@ module RegexInjectionConfig implements DataFlow::ConfigSig {
predicate isBarrier(DataFlow::Node node) { node instanceof RegexInjectionSanitizer } predicate isBarrier(DataFlow::Node node) { node instanceof RegexInjectionSanitizer }
} }
/**
* Taint-tracking flow for untrusted user input used to construct regular expressions.
*/
module RegexInjectionFlow = TaintTracking::Global<RegexInjectionConfig>; module RegexInjectionFlow = TaintTracking::Global<RegexInjectionConfig>;