Files
codeql/csharp/ql/test/query-tests/Security Features/CWE-611/InsecureXMLSettings.ql
2021-07-04 09:35:27 +02:00

10 lines
305 B
Plaintext

import csharp
import semmle.code.csharp.security.xml.InsecureXMLQuery
from ObjectCreation creation, Expr evidence, string reason
where
XmlSettings::insecureResolverSettings(creation, evidence, reason)
or
XmlSettings::dtdEnabledSettings(creation, evidence, reason)
select creation, evidence, reason