Files
codeql/ruby/ql/lib/change-notes/2022-07-18-sqli-in-activerecord-relation-annotate.md
2022-07-19 00:33:04 +00:00

189 B

category
category
minorAnalysis
  • Calls to ActiveRecord::Relation#annotate are now recognized asSqlExecutions so that it will be considered as a sink for queries like rb/sql-injection.