From e589d12d788e8a2aa6f9c0a2bc36e66b42d5ac7e Mon Sep 17 00:00:00 2001 From: Felicity Chapman Date: Fri, 7 Jun 2019 10:25:56 +0100 Subject: [PATCH] Update change-notes/1.21/analysis-javascript.md Co-Authored-By: Max Schaefer --- change-notes/1.21/analysis-javascript.md | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/change-notes/1.21/analysis-javascript.md b/change-notes/1.21/analysis-javascript.md index 7503e081ac8..5ba40530fc2 100644 --- a/change-notes/1.21/analysis-javascript.md +++ b/change-notes/1.21/analysis-javascript.md @@ -44,7 +44,7 @@ | Password in configuration file | Fewer false positive results | This query now excludes passwords that are inserted into the configuration file using a templating mechanism or read from environment variables. Results are no longer shown on LGTM by default. | | Replacement of a substring with itself | More results | This rule now considers the flow of regular expressions literals. | | Server-side URL redirect | Fewer false-positive results | This rule now treats URLs as safe in more cases where the hostname cannot be tampered with. | -| Tainted path | More results and fewer false-positive results | This rule now analyses path manipulation code more precisely. | +| Tainted path | More results and fewer false-positive results | This rule now analyzes path manipulation code more precisely. | | Type confusion through parameter tampering | Fewer false-positive results | This rule now recognizes additional emptiness checks. | | Useless assignment to property | Fewer false-positive results | This rule now ignores reads of additional getters. | | Unreachable statement | Unreachable throws no longer give an alert | This ignores unreachable throws, as they could be intentional (for example, to placate the TS compiler). |