We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 03d44fd commit 0edf0b2Copy full SHA for 0edf0b2
.github/codeql/custom-queries-javascript/ShellSanitizer.ql
@@ -9,9 +9,9 @@ module UtilSanitizerConfig implements DataFlow::ConfigSig {
9
predicate isBarrier(DataFlow::Node nd) {
10
nd.(DataFlow::CallNode).getCalleeName() = "sanitizeShellArg"
11
}
12
- /** Minimal stubs required by ConfigSig (false should be no extra action). */
13
- predicate isSource(DataFlow::Node n) { false }
14
- predicate isSink(DataFlow::Node n) { false }
+ /** Minimal stubs required by ConfigSig */
+ predicate isSource(DataFlow::Node n) { n = n }
+ predicate isSink(DataFlow::Node n) { n = n }
15
16
17
module UtilSanitizerConfigFlow = TaintTracking::Global<UtilSanitizerConfig>;
0 commit comments