Files
codeql/csharp/ql/test/query-tests/Security Features/CWE-611/InsecureXMLSettings.ql
2018-08-02 17:53:23 +01:00

10 lines
313 B
Plaintext

import csharp
import semmle.code.csharp.security.xml.InsecureXML::InsecureXML
from ObjectCreation creation, Expr evidence, string reason
where
XmlSettings::insecureResolverSettings(creation, evidence, reason)
or
XmlSettings::dtdEnabledSettings(creation, evidence, reason)
select creation, evidence, reason