File tree Expand file tree Collapse file tree 7 files changed +7
-0
lines changed
java/ql/src/experimental/Security/CWE Expand file tree Collapse file tree 7 files changed +7
-0
lines changed Original file line number Diff line number Diff line change @@ -22,6 +22,7 @@ import semmle.code.java.dataflow.ExternalFlow
2222private import semmle.code.java.security.Sanitizers
2323import Log4jInjectionFlow:: PathGraph
2424
25+ overlay [ local?]
2526deprecated private class ActivateModels extends ActiveExperimentalModels {
2627 ActivateModels ( ) { this = "log4j-injection" }
2728}
Original file line number Diff line number Diff line change @@ -17,6 +17,7 @@ import semmle.code.java.dataflow.FlowSources
1717import semmle.code.java.dataflow.ExternalFlow
1818import RemoteUrlToOpenStreamFlow:: PathGraph
1919
20+ overlay [ local?]
2021deprecated private class ActivateModels extends ActiveExperimentalModels {
2122 ActivateModels ( ) { this = "openstream-called-on-tainted-url" }
2223}
Original file line number Diff line number Diff line change @@ -22,6 +22,7 @@ import semmle.code.java.security.PathSanitizer
2222private import semmle.code.java.security.Sanitizers
2323import InjectFilePathFlow:: PathGraph
2424
25+ overlay [ local?]
2526deprecated private class ActivateModels extends ActiveExperimentalModels {
2627 ActivateModels ( ) { this = "file-path-injection" }
2728}
Original file line number Diff line number Diff line change @@ -18,6 +18,7 @@ import semmle.code.java.security.CommandLineQuery
1818import InputToArgumentToExecFlow:: PathGraph
1919private import semmle.code.java.dataflow.ExternalFlow
2020
21+ overlay [ local?]
2122deprecated private class ActivateModels extends ActiveExperimentalModels {
2223 ActivateModels ( ) { this = "jsch-os-injection" }
2324}
Original file line number Diff line number Diff line change @@ -7,6 +7,7 @@ private import semmle.code.java.dataflow.ExternalFlow
77private import semmle.code.java.dataflow.FlowSteps
88private import semmle.code.java.frameworks.android.WebView
99
10+ overlay [ local?]
1011private class ActivateModels extends ActiveExperimentalModels {
1112 ActivateModels ( ) { this = "android-web-resource-response" }
1213}
Original file line number Diff line number Diff line change @@ -8,6 +8,7 @@ import semmle.code.java.arithmetic.Overflow
88import semmle.code.java.dataflow.FlowSteps
99import semmle.code.java.controlflow.Guards
1010
11+ overlay [ local?]
1112private class ActivateModels extends ActiveExperimentalModels {
1213 ActivateModels ( ) { this = "thread-resource-abuse" }
1314}
Original file line number Diff line number Diff line change @@ -9,6 +9,7 @@ import semmle.code.java.controlflow.Guards
99import semmle.code.java.security.UrlRedirect
1010import Regex
1111
12+ overlay [ local?]
1213private class ActivateModels extends ActiveExperimentalModels {
1314 ActivateModels ( ) { this = "permissive-dot-regex-query" }
1415}
You can’t perform that action at this time.
0 commit comments