Files
codeql/javascript/ql/lib/change-notes/released/0.2.1.md
2022-07-14 08:56:03 +00:00

8 lines
376 B
Markdown

## 0.2.1
### Minor Analysis Improvements
* The `chownr` library is now modeled as a sink for the `js/path-injection` query.
* Improved modeling of sensitive data sources, so common words like `certain` and `secretary` are no longer considered a certificate and a secret (respectively).
* The `gray-matter` library is now modeled as a sink for the `js/code-injection` query.