Skip to content

Commit 6dfe0ce

Browse files
committed
Adapt chage note to new format
1 parent f0e9b76 commit 6dfe0ce

File tree

1 file changed

+3
-1
lines changed

1 file changed

+3
-1
lines changed
Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,5 @@
1-
lgtm,codescanning
1+
---
2+
category: newQuery
3+
---
24
* Two new queries, "Android fragment injection" (`java/android/fragment-injection`) and "Android fragment injection in PreferenceActivity" (`java/android/fragment-injection-preference-activity`) have been added.
35
These queries find exported Android activities that instantiate and host fragments created from user-provided data. Such activities are vulnerable to access control bypass and expose the Android application to unintended effects.

0 commit comments

Comments
 (0)