mirror of
https://github.com/github/codeql.git
synced 2026-04-23 15:55:18 +02:00
currently we do not:
- recognize the pattern
`{'author': {"$eq": author}}` as protected
- recognize arguements to `$where` (and friends)
as vulnerable