CodeQL Alert #30: Uncontrolled data used in path expression
| Field |
Value |
| Alert Number |
#30 |
| Rule ID |
py/path-injection |
| Severity |
HIGH |
| File |
vulnerable_path_traversal.py |
| Line |
27 |
| CWE |
CWE-022, CWE-023, CWE-036, CWE-073, CWE-099 |
| Classification |
demo-only |
| Alert Link |
View CodeQL Alert |
Description
Uncontrolled data used in path expression
Classification: demo-only
This file is prefixed with vulnerable_ and is an intentionally insecure demo file for CodeQL demonstration purposes.
Generated by automated security triage on 2026-03-25.
CodeQL Alert #30: Uncontrolled data used in path expression
py/path-injectionvulnerable_path_traversal.pydemo-onlyDescription
Uncontrolled data used in path expression
Classification:
demo-onlyThis file is prefixed with
vulnerable_and is an intentionally insecure demo file for CodeQL demonstration purposes.Generated by automated security triage on 2026-03-25.