|
1 | 1 | edges
|
2 | 2 | | SpelInjection.java:15:22:15:44 | getInputStream(...) : InputStream | SpelInjection.java:18:13:18:14 | in : InputStream |
|
3 | 3 | | SpelInjection.java:18:13:18:14 | in : InputStream | SpelInjection.java:18:21:18:25 | bytes [post update] : byte[] |
|
4 |
| -| SpelInjection.java:18:21:18:25 | bytes [post update] : byte[] | SpelInjection.java:23:5:23:14 | expression | |
| 4 | +| SpelInjection.java:18:21:18:25 | bytes [post update] : byte[] | SpelInjection.java:19:31:19:35 | bytes : byte[] | |
| 5 | +| SpelInjection.java:19:20:19:42 | new String(...) : String | SpelInjection.java:23:5:23:14 | expression | |
| 6 | +| SpelInjection.java:19:31:19:35 | bytes : byte[] | SpelInjection.java:19:20:19:42 | new String(...) : String | |
5 | 7 | | SpelInjection.java:27:22:27:44 | getInputStream(...) : InputStream | SpelInjection.java:30:13:30:14 | in : InputStream |
|
6 | 8 | | SpelInjection.java:30:13:30:14 | in : InputStream | SpelInjection.java:30:21:30:25 | bytes [post update] : byte[] |
|
7 |
| -| SpelInjection.java:30:21:30:25 | bytes [post update] : byte[] | SpelInjection.java:34:5:34:14 | expression | |
| 9 | +| SpelInjection.java:30:21:30:25 | bytes [post update] : byte[] | SpelInjection.java:31:31:31:35 | bytes : byte[] | |
| 10 | +| SpelInjection.java:31:20:31:42 | new String(...) : String | SpelInjection.java:34:5:34:14 | expression | |
| 11 | +| SpelInjection.java:31:31:31:35 | bytes : byte[] | SpelInjection.java:31:20:31:42 | new String(...) : String | |
8 | 12 | | SpelInjection.java:38:22:38:44 | getInputStream(...) : InputStream | SpelInjection.java:41:13:41:14 | in : InputStream |
|
9 | 13 | | SpelInjection.java:41:13:41:14 | in : InputStream | SpelInjection.java:41:21:41:25 | bytes [post update] : byte[] |
|
10 |
| -| SpelInjection.java:41:21:41:25 | bytes [post update] : byte[] | SpelInjection.java:48:5:48:14 | expression | |
| 14 | +| SpelInjection.java:41:21:41:25 | bytes [post update] : byte[] | SpelInjection.java:42:31:42:35 | bytes : byte[] | |
| 15 | +| SpelInjection.java:42:20:42:42 | new String(...) : String | SpelInjection.java:48:5:48:14 | expression | |
| 16 | +| SpelInjection.java:42:31:42:35 | bytes : byte[] | SpelInjection.java:42:20:42:42 | new String(...) : String | |
11 | 17 | | SpelInjection.java:52:22:52:44 | getInputStream(...) : InputStream | SpelInjection.java:55:13:55:14 | in : InputStream |
|
12 | 18 | | SpelInjection.java:55:13:55:14 | in : InputStream | SpelInjection.java:55:21:55:25 | bytes [post update] : byte[] |
|
13 |
| -| SpelInjection.java:55:21:55:25 | bytes [post update] : byte[] | SpelInjection.java:59:5:59:14 | expression | |
| 19 | +| SpelInjection.java:55:21:55:25 | bytes [post update] : byte[] | SpelInjection.java:56:31:56:35 | bytes : byte[] | |
| 20 | +| SpelInjection.java:56:20:56:42 | new String(...) : String | SpelInjection.java:59:5:59:14 | expression | |
| 21 | +| SpelInjection.java:56:31:56:35 | bytes : byte[] | SpelInjection.java:56:20:56:42 | new String(...) : String | |
14 | 22 | | SpelInjection.java:63:22:63:44 | getInputStream(...) : InputStream | SpelInjection.java:66:13:66:14 | in : InputStream |
|
15 | 23 | | SpelInjection.java:66:13:66:14 | in : InputStream | SpelInjection.java:66:21:66:25 | bytes [post update] : byte[] |
|
16 |
| -| SpelInjection.java:66:21:66:25 | bytes [post update] : byte[] | SpelInjection.java:70:5:70:14 | expression | |
| 24 | +| SpelInjection.java:66:21:66:25 | bytes [post update] : byte[] | SpelInjection.java:67:31:67:35 | bytes : byte[] | |
| 25 | +| SpelInjection.java:67:20:67:42 | new String(...) : String | SpelInjection.java:70:5:70:14 | expression | |
| 26 | +| SpelInjection.java:67:31:67:35 | bytes : byte[] | SpelInjection.java:67:20:67:42 | new String(...) : String | |
17 | 27 | | SpelInjection.java:74:22:74:44 | getInputStream(...) : InputStream | SpelInjection.java:77:13:77:14 | in : InputStream |
|
18 | 28 | | SpelInjection.java:77:13:77:14 | in : InputStream | SpelInjection.java:77:21:77:25 | bytes [post update] : byte[] |
|
19 |
| -| SpelInjection.java:77:21:77:25 | bytes [post update] : byte[] | SpelInjection.java:83:5:83:14 | expression | |
| 29 | +| SpelInjection.java:77:21:77:25 | bytes [post update] : byte[] | SpelInjection.java:78:31:78:35 | bytes : byte[] | |
| 30 | +| SpelInjection.java:78:20:78:42 | new String(...) : String | SpelInjection.java:83:5:83:14 | expression | |
| 31 | +| SpelInjection.java:78:31:78:35 | bytes : byte[] | SpelInjection.java:78:20:78:42 | new String(...) : String | |
20 | 32 | nodes
|
21 | 33 | | SpelInjection.java:15:22:15:44 | getInputStream(...) : InputStream | semmle.label | getInputStream(...) : InputStream |
|
22 | 34 | | SpelInjection.java:18:13:18:14 | in : InputStream | semmle.label | in : InputStream |
|
23 | 35 | | SpelInjection.java:18:21:18:25 | bytes [post update] : byte[] | semmle.label | bytes [post update] : byte[] |
|
| 36 | +| SpelInjection.java:19:20:19:42 | new String(...) : String | semmle.label | new String(...) : String | |
| 37 | +| SpelInjection.java:19:31:19:35 | bytes : byte[] | semmle.label | bytes : byte[] | |
24 | 38 | | SpelInjection.java:23:5:23:14 | expression | semmle.label | expression |
|
25 | 39 | | SpelInjection.java:27:22:27:44 | getInputStream(...) : InputStream | semmle.label | getInputStream(...) : InputStream |
|
26 | 40 | | SpelInjection.java:30:13:30:14 | in : InputStream | semmle.label | in : InputStream |
|
27 | 41 | | SpelInjection.java:30:21:30:25 | bytes [post update] : byte[] | semmle.label | bytes [post update] : byte[] |
|
| 42 | +| SpelInjection.java:31:20:31:42 | new String(...) : String | semmle.label | new String(...) : String | |
| 43 | +| SpelInjection.java:31:31:31:35 | bytes : byte[] | semmle.label | bytes : byte[] | |
28 | 44 | | SpelInjection.java:34:5:34:14 | expression | semmle.label | expression |
|
29 | 45 | | SpelInjection.java:38:22:38:44 | getInputStream(...) : InputStream | semmle.label | getInputStream(...) : InputStream |
|
30 | 46 | | SpelInjection.java:41:13:41:14 | in : InputStream | semmle.label | in : InputStream |
|
31 | 47 | | SpelInjection.java:41:21:41:25 | bytes [post update] : byte[] | semmle.label | bytes [post update] : byte[] |
|
| 48 | +| SpelInjection.java:42:20:42:42 | new String(...) : String | semmle.label | new String(...) : String | |
| 49 | +| SpelInjection.java:42:31:42:35 | bytes : byte[] | semmle.label | bytes : byte[] | |
32 | 50 | | SpelInjection.java:48:5:48:14 | expression | semmle.label | expression |
|
33 | 51 | | SpelInjection.java:52:22:52:44 | getInputStream(...) : InputStream | semmle.label | getInputStream(...) : InputStream |
|
34 | 52 | | SpelInjection.java:55:13:55:14 | in : InputStream | semmle.label | in : InputStream |
|
35 | 53 | | SpelInjection.java:55:21:55:25 | bytes [post update] : byte[] | semmle.label | bytes [post update] : byte[] |
|
| 54 | +| SpelInjection.java:56:20:56:42 | new String(...) : String | semmle.label | new String(...) : String | |
| 55 | +| SpelInjection.java:56:31:56:35 | bytes : byte[] | semmle.label | bytes : byte[] | |
36 | 56 | | SpelInjection.java:59:5:59:14 | expression | semmle.label | expression |
|
37 | 57 | | SpelInjection.java:63:22:63:44 | getInputStream(...) : InputStream | semmle.label | getInputStream(...) : InputStream |
|
38 | 58 | | SpelInjection.java:66:13:66:14 | in : InputStream | semmle.label | in : InputStream |
|
39 | 59 | | SpelInjection.java:66:21:66:25 | bytes [post update] : byte[] | semmle.label | bytes [post update] : byte[] |
|
| 60 | +| SpelInjection.java:67:20:67:42 | new String(...) : String | semmle.label | new String(...) : String | |
| 61 | +| SpelInjection.java:67:31:67:35 | bytes : byte[] | semmle.label | bytes : byte[] | |
40 | 62 | | SpelInjection.java:70:5:70:14 | expression | semmle.label | expression |
|
41 | 63 | | SpelInjection.java:74:22:74:44 | getInputStream(...) : InputStream | semmle.label | getInputStream(...) : InputStream |
|
42 | 64 | | SpelInjection.java:77:13:77:14 | in : InputStream | semmle.label | in : InputStream |
|
43 | 65 | | SpelInjection.java:77:21:77:25 | bytes [post update] : byte[] | semmle.label | bytes [post update] : byte[] |
|
| 66 | +| SpelInjection.java:78:20:78:42 | new String(...) : String | semmle.label | new String(...) : String | |
| 67 | +| SpelInjection.java:78:31:78:35 | bytes : byte[] | semmle.label | bytes : byte[] | |
44 | 68 | | SpelInjection.java:83:5:83:14 | expression | semmle.label | expression |
|
45 | 69 | #select
|
46 | 70 | | SpelInjection.java:23:5:23:14 | expression | SpelInjection.java:15:22:15:44 | getInputStream(...) : InputStream | SpelInjection.java:23:5:23:14 | expression | SpEL injection from $@. | SpelInjection.java:15:22:15:44 | getInputStream(...) | this user input |
|
|
0 commit comments