mirror of
https://github.com/github/codeql.git
synced 2026-04-23 07:45:17 +02:00
Restricted taint to array elements.
This commit is contained in:
@@ -39,10 +39,11 @@ function strToStr() {
|
||||
}
|
||||
|
||||
function strToArray() {
|
||||
sink(s.chop(source("s1"), 3)[0]); // $ hasTaintFlow=s1
|
||||
sink(s.chars(source("s2")[0])); // $ hasTaintFlow=s2
|
||||
sink(s.words(source("s3")[0])); // $ hasTaintFlow=s3
|
||||
sink(s.lines(source("s7")[0])); // $ hasTaintFlow=s7
|
||||
sink(s.chop(source("s1"), 3)); // $ MISSING: hasTaintFlow=s1
|
||||
sink(s.chars(source("s2")[0])); // $ MISSING: hasTaintFlow=s2
|
||||
sink(s.words(source("s3")[0])); // $ MISSING: hasTaintFlow=s3
|
||||
sink(s.lines(source("s7")[0])); // $ MISSING: hasTaintFlow=s7
|
||||
sink(s.chop(source("s1"), 3).length);
|
||||
}
|
||||
|
||||
function arrayToStr() {
|
||||
|
||||
Reference in New Issue
Block a user