Files
codeql/python/change-notes/2021-02-03-flask-add-blueprint-modeling.md
2021-02-16 15:26:51 +01:00

328 B

lgtm,codescanning

  • Added modeling of flask blueprints (flask.Blueprint), specifically request handlers defined with such blueprints. This can result in new sources of remote user input (RemoteFlowSource) -- since we're now able to detect routed parameters -- and new XSS sinks from the responses of these request handlers.