File tree Expand file tree Collapse file tree 2 files changed +6
-0
lines changed
ruby/ql/lib/codeql/ruby/security Expand file tree Collapse file tree 2 files changed +6
-0
lines changed Original file line number Diff line number Diff line change @@ -13,10 +13,13 @@ private import codeql.ruby.dataflow.RemoteFlowSources
13
13
* vulnerabilities, as well as extension points for adding your own.
14
14
*/
15
15
module SqlInjection {
16
+ /** A data flow source for SQL injection vulnerabilities. */
16
17
abstract class Source extends DataFlow:: Node { }
17
18
19
+ /** A data flow sink for SQL injection vulnerabilities. */
18
20
abstract class Sink extends DataFlow:: Node { }
19
21
22
+ /** A sanitizer for SQL injection vulnerabilities. */
20
23
abstract class Sanitizer extends DataFlow:: Node { }
21
24
22
25
/**
Original file line number Diff line number Diff line change @@ -7,6 +7,9 @@ private import codeql.ruby.DataFlow
7
7
private import codeql.ruby.TaintTracking
8
8
import SqlInjectionCustomizations:: SqlInjection
9
9
10
+ /**
11
+ * A taint-tracking configuration for detecting SQL injection vulnerabilities.
12
+ */
10
13
class Configuration extends TaintTracking:: Configuration {
11
14
Configuration ( ) { this = "SqlInjectionConfiguration" }
12
15
You can’t perform that action at this time.
0 commit comments