mirror of
https://github.com/github/codeql.git
synced 2025-12-17 17:23:36 +01:00
623 B
623 B
lgtm,codescanning
- Changed the way to provide extra sources/sinks for
@kind path-problemqueries, to avoid a potential performance problem due to re-evaluation of data-flow configurations. Please use the new<query>Customization.qllfiles and extend their classes instead (such as extending theSinkclass frompython/ql/src/semmle/python/security/dataflow/SqlInjectionCustomizations.qll). This is relevant for the queries:py/sql-injection,py/code-injection,py/command-line-injection,py/reflective-xss,py/url-redirection,py/unsafe-deserialization,py/stack-trace-exposure,py/path-injection.