Skip to content

Commit e930b43

Browse files
committed
Python security queries. Choose a precision reflecting actual precision for Security queries.
1 parent 5f58824 commit e930b43

File tree

7 files changed

+7
-7
lines changed

7 files changed

+7
-7
lines changed

python/ql/src/Security/CWE-022/PathInjection.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@
44
* @kind problem
55
* @problem.severity error
66
* @sub-severity high
7-
* @precision medium
7+
* @precision high
88
* @id py/path-injection
99
* @tags correctness
1010
* security

python/ql/src/Security/CWE-078/CommandInjection.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@
55
* @kind problem
66
* @problem.severity error
77
* @sub-severity high
8-
* @precision medium
8+
* @precision high
99
* @id py/command-line-injection
1010
* @tags correctness
1111
* security

python/ql/src/Security/CWE-079/ReflectedXss.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@
55
* @kind problem
66
* @problem.severity error
77
* @sub-severity high
8-
* @precision medium
8+
* @precision high
99
* @id py/reflective-xss
1010
* @tags security
1111
* external/cwe/cwe-079

python/ql/src/Security/CWE-089/SqlInjection.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -4,7 +4,7 @@
44
* malicious SQL code by the user.
55
* @kind problem
66
* @problem.severity error
7-
* @precision medium
7+
* @precision high
88
* @id py/sql-injection
99
* @tags security
1010
* external/cwe/cwe-089

python/ql/src/Security/CWE-094/CodeInjection.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@
55
* @kind problem
66
* @problem.severity error
77
* @sub-severity high
8-
* @precision medium
8+
* @precision high
99
* @id py/code-injection
1010
* @tags security
1111
* external/owasp/owasp-a1

python/ql/src/Security/CWE-327/BrokenCryptoAlgorithm.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -3,7 +3,7 @@
33
* @description Using broken or weak cryptographic algorithms can compromise security.
44
* @kind problem
55
* @problem.severity warning
6-
* @precision medium
6+
* @precision high
77
* @id py/weak-cryptographic-algorithm
88
* @tags security
99
* external/cwe/cwe-327

python/ql/src/Security/CWE-502/UnsafeDeserialization.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,7 @@
55
* @id py/unsafe-deserialization
66
* @problem.severity error
77
* @sub-severity high
8-
* @precision medium
8+
* @precision high
99
* @tags external/cwe/cwe-502
1010
* security
1111
* serialization

0 commit comments

Comments
 (0)