File tree Expand file tree Collapse file tree 1 file changed +2
-2
lines changed
python/ql/src/experimental/semmle/python/security/injection Expand file tree Collapse file tree 1 file changed +2
-2
lines changed Original file line number Diff line number Diff line change @@ -17,7 +17,7 @@ class RFSToDictConfig extends TaintTracking::Configuration {
17
17
override predicate isSource ( DataFlow:: Node source ) { source instanceof RemoteFlowSource }
18
18
19
19
override predicate isSink ( DataFlow:: Node sink ) {
20
- exists ( Decoding decoding | decoding .getFormat ( ) = "JSON" and sink = decoding )
20
+ exists ( Decoding decoding | decoding .getFormat ( ) = "JSON" and sink = decoding . getOutput ( ) )
21
21
}
22
22
23
23
override predicate isSanitizer ( DataFlow:: Node sanitizer ) {
@@ -32,7 +32,7 @@ class FromDataDictToSink extends TaintTracking2::Configuration {
32
32
FromDataDictToSink ( ) { this = "FromDataDictToSink" }
33
33
34
34
override predicate isSource ( DataFlow:: Node source ) {
35
- exists ( Decoding decoding | decoding .getFormat ( ) = "JSON" and source = decoding )
35
+ exists ( Decoding decoding | decoding .getFormat ( ) = "JSON" and source = decoding . getOutput ( ) )
36
36
}
37
37
38
38
override predicate isSink ( DataFlow:: Node sink ) { sink = any ( NoSQLQuery noSQLQuery ) .getQuery ( ) }
You can’t perform that action at this time.
0 commit comments