We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 180904e commit 9b1c54eCopy full SHA for 9b1c54e
java/ql/src/semmle/code/java/security/ResponseSplitting.qll
@@ -17,8 +17,8 @@ private class HeaderSplittingSinkModel extends SinkModelCsv {
17
row =
18
[
19
"javax.servlet.http;HttpServletResponse;false;addCookie;;;Argument[0];header-splitting",
20
- "javax.servlet.http;HttpServletResponse;false;addHeader;;;Argument;header-splitting",
21
- "javax.servlet.http;HttpServletResponse;false;setHeader;;;Argument;header-splitting",
+ "javax.servlet.http;HttpServletResponse;false;addHeader;;;Argument[0..1];header-splitting",
+ "javax.servlet.http;HttpServletResponse;false;setHeader;;;Argument[0..1];header-splitting",
22
"javax.ws.rs.core;ResponseBuilder;false;header;;;Argument[1];header-splitting"
23
]
24
}
0 commit comments