|
1 | 1 | edges
|
2 | 2 | | ArgumentInjection.go:9:10:9:16 | selection of URL | ArgumentInjection.go:9:10:9:24 | call to Query | provenance | MaD:735 |
|
3 | 3 | | ArgumentInjection.go:9:10:9:24 | call to Query | ArgumentInjection.go:10:31:10:34 | path | provenance | |
|
| 4 | +| CommandInjection2.go:13:15:13:21 | selection of URL | CommandInjection2.go:13:15:13:29 | call to Query | provenance | MaD:735 | |
| 5 | +| CommandInjection2.go:13:15:13:29 | call to Query | CommandInjection2.go:15:67:15:75 | imageName | provenance | | |
| 6 | +| CommandInjection2.go:15:34:15:88 | []type{args} [array] | CommandInjection2.go:15:34:15:88 | call to Sprintf | provenance | MaD:245 | |
| 7 | +| CommandInjection2.go:15:67:15:75 | imageName | CommandInjection2.go:15:34:15:88 | []type{args} [array] | provenance | | |
| 8 | +| CommandInjection2.go:15:67:15:75 | imageName | CommandInjection2.go:15:34:15:88 | call to Sprintf | provenance | FunctionModel | |
| 9 | +| CommandInjection2.go:41:18:41:24 | selection of URL | CommandInjection2.go:41:18:41:32 | call to Query | provenance | MaD:735 | |
| 10 | +| CommandInjection2.go:41:18:41:32 | call to Query | CommandInjection2.go:51:70:51:78 | imageName | provenance | | |
| 11 | +| CommandInjection2.go:51:37:51:91 | []type{args} [array] | CommandInjection2.go:51:37:51:91 | call to Sprintf | provenance | MaD:245 | |
| 12 | +| CommandInjection2.go:51:70:51:78 | imageName | CommandInjection2.go:51:37:51:91 | []type{args} [array] | provenance | | |
| 13 | +| CommandInjection2.go:51:70:51:78 | imageName | CommandInjection2.go:51:37:51:91 | call to Sprintf | provenance | FunctionModel | |
4 | 14 | | CommandInjection.go:9:13:9:19 | selection of URL | CommandInjection.go:9:13:9:27 | call to Query | provenance | MaD:735 |
|
5 | 15 | | CommandInjection.go:9:13:9:27 | call to Query | CommandInjection.go:10:22:10:28 | cmdName | provenance | |
|
6 | 16 | | GitSubcommands.go:10:13:10:19 | selection of URL | GitSubcommands.go:10:13:10:27 | call to Query | provenance | MaD:735 |
|
@@ -103,6 +113,16 @@ nodes
|
103 | 113 | | ArgumentInjection.go:9:10:9:16 | selection of URL | semmle.label | selection of URL |
|
104 | 114 | | ArgumentInjection.go:9:10:9:24 | call to Query | semmle.label | call to Query |
|
105 | 115 | | ArgumentInjection.go:10:31:10:34 | path | semmle.label | path |
|
| 116 | +| CommandInjection2.go:13:15:13:21 | selection of URL | semmle.label | selection of URL | |
| 117 | +| CommandInjection2.go:13:15:13:29 | call to Query | semmle.label | call to Query | |
| 118 | +| CommandInjection2.go:15:34:15:88 | []type{args} [array] | semmle.label | []type{args} [array] | |
| 119 | +| CommandInjection2.go:15:34:15:88 | call to Sprintf | semmle.label | call to Sprintf | |
| 120 | +| CommandInjection2.go:15:67:15:75 | imageName | semmle.label | imageName | |
| 121 | +| CommandInjection2.go:41:18:41:24 | selection of URL | semmle.label | selection of URL | |
| 122 | +| CommandInjection2.go:41:18:41:32 | call to Query | semmle.label | call to Query | |
| 123 | +| CommandInjection2.go:51:37:51:91 | []type{args} [array] | semmle.label | []type{args} [array] | |
| 124 | +| CommandInjection2.go:51:37:51:91 | call to Sprintf | semmle.label | call to Sprintf | |
| 125 | +| CommandInjection2.go:51:70:51:78 | imageName | semmle.label | imageName | |
106 | 126 | | CommandInjection.go:9:13:9:19 | selection of URL | semmle.label | selection of URL |
|
107 | 127 | | CommandInjection.go:9:13:9:27 | call to Query | semmle.label | call to Query |
|
108 | 128 | | CommandInjection.go:10:22:10:28 | cmdName | semmle.label | cmdName |
|
@@ -195,6 +215,8 @@ nodes
|
195 | 215 | subpaths
|
196 | 216 | #select
|
197 | 217 | | ArgumentInjection.go:10:31:10:34 | path | ArgumentInjection.go:9:10:9:16 | selection of URL | ArgumentInjection.go:10:31:10:34 | path | This command depends on a $@. | ArgumentInjection.go:9:10:9:16 | selection of URL | user-provided value |
|
| 218 | +| CommandInjection2.go:15:34:15:88 | call to Sprintf | CommandInjection2.go:13:15:13:21 | selection of URL | CommandInjection2.go:15:34:15:88 | call to Sprintf | This command depends on a $@. | CommandInjection2.go:13:15:13:21 | selection of URL | user-provided value | |
| 219 | +| CommandInjection2.go:51:37:51:91 | call to Sprintf | CommandInjection2.go:41:18:41:24 | selection of URL | CommandInjection2.go:51:37:51:91 | call to Sprintf | This command depends on a $@. | CommandInjection2.go:41:18:41:24 | selection of URL | user-provided value | |
198 | 220 | | CommandInjection.go:10:22:10:28 | cmdName | CommandInjection.go:9:13:9:19 | selection of URL | CommandInjection.go:10:22:10:28 | cmdName | This command depends on a $@. | CommandInjection.go:9:13:9:19 | selection of URL | user-provided value |
|
199 | 221 | | GitSubcommands.go:12:31:12:37 | tainted | GitSubcommands.go:10:13:10:19 | selection of URL | GitSubcommands.go:12:31:12:37 | tainted | This command depends on a $@. | GitSubcommands.go:10:13:10:19 | selection of URL | user-provided value |
|
200 | 222 | | GitSubcommands.go:13:31:13:37 | tainted | GitSubcommands.go:10:13:10:19 | selection of URL | GitSubcommands.go:13:31:13:37 | tainted | This command depends on a $@. | GitSubcommands.go:10:13:10:19 | selection of URL | user-provided value |
|
|
0 commit comments