mirror of
https://github.com/github/codeql.git
synced 2025-12-17 17:23:36 +01:00
8 lines
365 B
Markdown
8 lines
365 B
Markdown
lgtm,codescanning
|
|
* The security queries now track taint through the format string of a date-formatting operation.
|
|
Affected packages are
|
|
[moment](https://npmjs.com/package/moment),
|
|
[moment-timezone](https://npmjs.com/package/moment-timezone),
|
|
[date-fns](https://npmjs.com/package/date-fns), and
|
|
[dateformat](https://npmjs.com/package/dateformat).
|