mirror of
https://github.com/github/codeql.git
synced 2025-12-21 11:16:30 +01:00
JS: Port new sources based on comment from JarLob
This commit is contained in:
@@ -26,11 +26,13 @@ private API::Node taintSource() {
|
||||
or
|
||||
result = payload().getMember(["review", "review_comment", "comment"]).getMember("body")
|
||||
or
|
||||
result = workflowRun().getMember("head_branch")
|
||||
result = workflowRun().getMember(["head_branch", "display_title"])
|
||||
or
|
||||
result = workflowRun().getMember("head_repository").getMember("description")
|
||||
or
|
||||
result = commitObj().getMember("message")
|
||||
or
|
||||
result = commitObj().getMember("author").getMember(["name", "email"])
|
||||
result = commitObj().getMember(["author", "committer"]).getMember(["name", "email"])
|
||||
}
|
||||
|
||||
private class GitHubActionsSource extends RemoteFlowSource {
|
||||
|
||||
Reference in New Issue
Block a user