Refactor GroovyInjectionQuery

This commit is contained in:
Ed Minnix
2023-03-20 12:24:57 -04:00
parent bf5f82bb78
commit f6b8d89756
3 changed files with 27 additions and 5 deletions

View File

@@ -13,9 +13,9 @@
import java
import semmle.code.java.security.GroovyInjectionQuery
import DataFlow::PathGraph
import GroovyInjectionFlow::PathGraph
from DataFlow::PathNode source, DataFlow::PathNode sink, GroovyInjectionConfig conf
where conf.hasFlowPath(source, sink)
from GroovyInjectionFlow::PathNode source, GroovyInjectionFlow::PathNode sink
where GroovyInjectionFlow::hasFlowPath(source, sink)
select sink.getNode(), source, sink, "Groovy script depends on a $@.", source.getNode(),
"user-provided value"