mirror of
https://github.com/github/codeql.git
synced 2026-04-21 06:55:31 +02:00
currently we do not:
- recognize the pattern
`{'author': {"$eq": author}}` as protected
- recognize arguements to `$where` (and friends)
as vulnerable