mirror of
https://github.com/github/codeql.git
synced 2026-01-05 10:40:21 +01:00
Specifically in Rails apps, we look for root ActionController classes without a call to `protect_from_forgery`.
1 line
52 B
Plaintext
1 line
52 B
Plaintext
queries/security/cwe-352/CSRFProtectionNotEnabled.ql |