Files
codeql/ql/lib/ext/renovatebot_github-action.model.yml
2024-04-11 11:24:42 +02:00

11 lines
594 B
YAML

extensions:
- addsTo:
pack: githubsecuritylab/actions-all
extensible: sinkModel
data:
- ["renovatebot/github-action", "*", "input.renovate-image", "command-injection", "manual"]
- ["renovatebot/github-action", "*", "input.renovate-version", "command-injection", "manual"]
- ["renovatebot/github-action", "*", "input.docker-cmd-file", "command-injection", "manual"]
- ["renovatebot/github-action", "*", "input.docker-user", "command-injection", "manual"]
- ["renovatebot/github-action", "*", "input.docker-volumes", "command-injection", "manual"]