mirror of
https://github.com/github/codeql.git
synced 2026-03-22 23:49:43 +01:00
JS: Factor RequestHeaderAccess into separate class
This commit is contained in:
@@ -14,7 +14,7 @@ class TaintedHostHeader extends TaintTracking::Configuration {
|
||||
TaintedHostHeader() { this = "TaintedHostHeader" }
|
||||
|
||||
override predicate isSource(DataFlow::Node node) {
|
||||
exists (HTTP::RequestInputAccess input | node = input |
|
||||
exists (HTTP::RequestHeaderAccess input | node = input |
|
||||
input.getKind() = "header" and
|
||||
input.getAHeaderName() = "host")
|
||||
}
|
||||
|
||||
Reference in New Issue
Block a user