Fix failing checks

This commit is contained in:
Tony Torralba
2021-05-04 11:29:09 +02:00
parent 6b79ca6403
commit f79d2e06f9
5 changed files with 4 additions and 0 deletions

View File

@@ -0,0 +1,2 @@
lgtm,codescanning
* The query "Expression language injection (JEXL)" (`java/jexl-expression-injection`) has been promoted from experimental to the main query pack. Its results will now appear by default. This query was originally [submitted as an experimental query by @artem-smotrakov](https://github.com/github/codeql/pull/4965)

View File

@@ -1,3 +1,5 @@
/** Provides classes to reason about Expression Langauge (JEXL) injection vulnerabilities. */
import java import java
import semmle.code.java.dataflow.TaintTracking import semmle.code.java.dataflow.TaintTracking
private import semmle.code.java.dataflow.ExternalFlow private import semmle.code.java.dataflow.ExternalFlow