Files
codeql/java/ql/test/query-tests/security/CWE-532/Test.java
Owen Mansel-Chan 19ac9e089a Add test
2024-03-03 21:03:41 +00:00

29 lines
617 B
Java

import org.apache.logging.log4j.Logger;
class Test {
void test(String password) {
Logger logger = null;
logger.info("User's password is: " + password); // $ hasTaintFlow
}
void test2(String authToken) {
Logger logger = null;
logger.error("Auth failed for: " + authToken); // $ hasTaintFlow
}
void test3(String username) {
Logger logger = null;
logger.error("Auth failed for: " + username); // Safe
}
void test4(String nullToken) {
Logger logger = null;
logger.error("Auth failed for: " + nullToken); // Safe
}
}