Files
codeql/java/ql/test/experimental/query-tests/security/CWE-022/Zip4j.java
am0o0 1d1c476674 update tests and use TaintFlowTestArgString
add stubs
add missed sink models
2024-07-13 16:58:51 +02:00

10 lines
273 B
Java
Executable File

import java.io.IOException;
import net.lingala.zip4j.ZipFile;
public class Zip4j {
public void PathInjection(String path) throws IOException {
ZipFile zipfile = new ZipFile(path); // $ hasTaintFlow="path"
zipfile.extractAll(path); // $ hasTaintFlow="path"
}
}