mirror of
https://github.com/github/codeql.git
synced 2025-12-18 09:43:15 +01:00
One of the diffs look confusing but:
Previously parameter {2,3} where flagged, now parameter {1,2} are flagged.
Note that for command injection, the SystemCommandExecution is flagged
despite the test file claiming otherwise.
17 lines
247 B
JavaScript
17 lines
247 B
JavaScript
|
|
for (j = i - 1; j >= 0; --j) {
|
|
}
|
|
|
|
for (j = i + 1; j < strLength; --j) {
|
|
} // $ Alert
|
|
|
|
for (var i = 0, l = c.length; i > l; i ++) {
|
|
} // $ Alert
|
|
|
|
|
|
for (i=lower-1; i>=0; --i)
|
|
a[i] = 0;
|
|
|
|
for (i=upper+1; i<a.length; --i)
|
|
a[i] = 0; // $ Alert
|