Files
codeql/javascript/ql/src/Summary/TaintSources.ql
2021-04-20 19:51:16 +01:00

17 lines
338 B
Plaintext

/**
* @name Taint sources
* @description Sources of untrusted input.
* @kind problem
* @problem.severity info
* @id js/summary/taint-sources
* @tags summary
* @precision medium
*/
import javascript
import meta.internal.TaintMetrics
from RemoteFlowSource node
where node = relevantTaintSource()
select node, node.getSourceType()