mirror of
https://github.com/github/codeql.git
synced 2025-12-21 11:16:30 +01:00
JS: Port new sources based on comment from JarLob
This commit is contained in:
@@ -26,11 +26,13 @@ private API::Node taintSource() {
|
|||||||
or
|
or
|
||||||
result = payload().getMember(["review", "review_comment", "comment"]).getMember("body")
|
result = payload().getMember(["review", "review_comment", "comment"]).getMember("body")
|
||||||
or
|
or
|
||||||
result = workflowRun().getMember("head_branch")
|
result = workflowRun().getMember(["head_branch", "display_title"])
|
||||||
|
or
|
||||||
|
result = workflowRun().getMember("head_repository").getMember("description")
|
||||||
or
|
or
|
||||||
result = commitObj().getMember("message")
|
result = commitObj().getMember("message")
|
||||||
or
|
or
|
||||||
result = commitObj().getMember("author").getMember(["name", "email"])
|
result = commitObj().getMember(["author", "committer"]).getMember(["name", "email"])
|
||||||
}
|
}
|
||||||
|
|
||||||
private class GitHubActionsSource extends RemoteFlowSource {
|
private class GitHubActionsSource extends RemoteFlowSource {
|
||||||
|
|||||||
Reference in New Issue
Block a user