mirror of
https://github.com/github/codeql.git
synced 2026-01-06 03:00:24 +01:00
12 lines
900 B
Plaintext
12 lines
900 B
Plaintext
#select
|
|
| InsecureBeanValidation.java:11:64:11:68 | value | InsecureBeanValidation.java:7:28:7:40 | object : String | InsecureBeanValidation.java:11:64:11:68 | value | Custom constraint error message contains an unsanitized $@. | InsecureBeanValidation.java:7:28:7:40 | object : String | user-provided value |
|
|
edges
|
|
| InsecureBeanValidation.java:7:28:7:40 | object : String | InsecureBeanValidation.java:11:64:11:68 | value | provenance | Src:MaD:1 Sink:MaD:2 |
|
|
models
|
|
| 1 | Source: javax.validation; ConstraintValidator; true; isValid; ; ; Parameter[0]; remote; manual |
|
|
| 2 | Sink: javax.validation; ConstraintValidatorContext; true; buildConstraintViolationWithTemplate; ; ; Argument[0]; bean-validation; manual |
|
|
nodes
|
|
| InsecureBeanValidation.java:7:28:7:40 | object : String | semmle.label | object : String |
|
|
| InsecureBeanValidation.java:11:64:11:68 | value | semmle.label | value |
|
|
subpaths
|