Files
codeql/java/ql/lib/ext/android.webkit.model.yml
2022-11-28 12:30:34 +01:00

16 lines
760 B
YAML

extensions:
- addsTo:
pack: codeql/java-all
extensible: extSourceModel
data:
- ["android.webkit", "WebView", False, "getOriginalUrl", "()", "", "ReturnValue", "remote", "manual"]
- ["android.webkit", "WebView", False, "getUrl", "()", "", "ReturnValue", "remote", "manual"]
- addsTo:
pack: codeql/java-all
extensible: extSinkModel
data:
# Models representing methods susceptible to XSS attacks.
- ["android.webkit", "WebView", False, "evaluateJavascript", "", "", "Argument[0]", "xss", "manual"]
- ["android.webkit", "WebView", False, "loadData", "", "", "Argument[0]", "xss", "manual"]
- ["android.webkit", "WebView", False, "loadDataWithBaseURL", "", "", "Argument[1]", "xss", "manual"]