mirror of
https://github.com/github/codeql.git
synced 2026-04-27 01:35:13 +02:00
Python: Remove all usage of DataFlow2+TaintTracking2
(and any higher number as well)
This commit is contained in:
@@ -6,7 +6,6 @@
|
||||
|
||||
private import python
|
||||
private import semmle.python.dataflow.new.DataFlow
|
||||
private import semmle.python.dataflow.new.DataFlow2
|
||||
private import semmle.python.dataflow.new.TaintTracking
|
||||
private import semmle.python.Concepts
|
||||
private import semmle.python.dataflow.new.RemoteFlowSources
|
||||
|
||||
@@ -1,8 +1,6 @@
|
||||
private import python
|
||||
private import semmle.python.dataflow.new.TaintTracking2
|
||||
private import semmle.python.dataflow.new.TaintTracking
|
||||
private import semmle.python.dataflow.new.DataFlow
|
||||
private import semmle.python.dataflow.new.DataFlow2
|
||||
private import semmle.python.ApiGraphs
|
||||
private import semmle.python.dataflow.new.RemoteFlowSources
|
||||
private import semmle.python.frameworks.Flask
|
||||
@@ -164,7 +162,7 @@ class NonConstantTimeComparisonSink extends DataFlow::Node {
|
||||
|
||||
/** Holds if remote user input was used in the comparison. */
|
||||
predicate includesUserInput() {
|
||||
UserInputInComparisonFlow::flowTo(DataFlow2::exprNode(anotherParameter))
|
||||
UserInputInComparisonFlow::flowTo(DataFlow::exprNode(anotherParameter))
|
||||
}
|
||||
}
|
||||
|
||||
@@ -175,7 +173,7 @@ class SecretSource extends DataFlow::Node {
|
||||
SecretSource() { secret = this.asExpr() }
|
||||
|
||||
/** Holds if the secret was deliverd by remote user. */
|
||||
predicate includesUserInput() { UserInputSecretFlow::flowTo(DataFlow2::exprNode(secret)) }
|
||||
predicate includesUserInput() { UserInputSecretFlow::flowTo(DataFlow::exprNode(secret)) }
|
||||
}
|
||||
|
||||
/** A string for `match` that identifies strings that look like they represent secret data. */
|
||||
|
||||
Reference in New Issue
Block a user