Add missing substitution description

This commit is contained in:
Chris Smowton
2022-02-25 19:12:25 +00:00
parent 8fbd8c52dd
commit ff5d680837

View File

@@ -69,4 +69,4 @@ class NonConstantTimeComparisonConfig extends TaintTracking::Configuration {
from DataFlow::PathNode source, DataFlow::PathNode sink, NonConstantTimeComparisonConfig conf
where conf.hasFlowPath(source, sink)
select sink.getNode(), source, sink, "Possible timing attack against $@ validation.",
source.getNode()
source.getNode(), "client-supplied token"