Skip to content

Commit 53f756b

Browse files
Update ZipSlip.expected
1 parent d89ed8b commit 53f756b

File tree

1 file changed

+12
-4
lines changed

1 file changed

+12
-4
lines changed

python/ql/test/experimental/query-tests/Security/CWE-022/ZipSlip.expected

Lines changed: 12 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -5,7 +5,10 @@ edges
55
| zipslip_bad.py:16:13:16:17 | SSA variable entry | zipslip_bad.py:17:26:17:30 | ControlFlowNode for entry |
66
| zipslip_bad.py:20:10:20:27 | ControlFlowNode for Attribute() | zipslip_bad.py:22:13:22:17 | SSA variable entry |
77
| zipslip_bad.py:22:13:22:17 | SSA variable entry | zipslip_bad.py:23:29:23:33 | ControlFlowNode for entry |
8-
| zipslip_bad.py:36:14:36:30 | ControlFlowNode for Attribute() | zipslip_bad.py:37:32:37:35 | ControlFlowNode for srcf |
8+
| zipslip_bad.py:27:10:27:22 | ControlFlowNode for Attribute() | zipslip_bad.py:29:13:29:13 | SSA variable x |
9+
| zipslip_bad.py:29:13:29:13 | SSA variable x | zipslip_bad.py:30:25:30:25 | ControlFlowNode for x |
10+
| zipslip_bad.py:34:16:34:28 | ControlFlowNode for Attribute() | zipslip_bad.py:35:9:35:9 | SSA variable x |
11+
| zipslip_bad.py:35:9:35:9 | SSA variable x | zipslip_bad.py:37:32:37:32 | ControlFlowNode for x |
912
nodes
1013
| zipslip_bad.py:8:10:8:31 | ControlFlowNode for Attribute() | semmle.label | ControlFlowNode for Attribute() |
1114
| zipslip_bad.py:10:13:10:17 | SSA variable entry | semmle.label | SSA variable entry |
@@ -16,11 +19,16 @@ nodes
1619
| zipslip_bad.py:20:10:20:27 | ControlFlowNode for Attribute() | semmle.label | ControlFlowNode for Attribute() |
1720
| zipslip_bad.py:22:13:22:17 | SSA variable entry | semmle.label | SSA variable entry |
1821
| zipslip_bad.py:23:29:23:33 | ControlFlowNode for entry | semmle.label | ControlFlowNode for entry |
19-
| zipslip_bad.py:36:14:36:30 | ControlFlowNode for Attribute() | semmle.label | ControlFlowNode for Attribute() |
20-
| zipslip_bad.py:37:32:37:35 | ControlFlowNode for srcf | semmle.label | ControlFlowNode for srcf |
22+
| zipslip_bad.py:27:10:27:22 | ControlFlowNode for Attribute() | semmle.label | ControlFlowNode for Attribute() |
23+
| zipslip_bad.py:29:13:29:13 | SSA variable x | semmle.label | SSA variable x |
24+
| zipslip_bad.py:30:25:30:25 | ControlFlowNode for x | semmle.label | ControlFlowNode for x |
25+
| zipslip_bad.py:34:16:34:28 | ControlFlowNode for Attribute() | semmle.label | ControlFlowNode for Attribute() |
26+
| zipslip_bad.py:35:9:35:9 | SSA variable x | semmle.label | SSA variable x |
27+
| zipslip_bad.py:37:32:37:32 | ControlFlowNode for x | semmle.label | ControlFlowNode for x |
2128
subpaths
2229
#select
2330
| zipslip_bad.py:11:25:11:29 | ControlFlowNode for entry | zipslip_bad.py:8:10:8:31 | ControlFlowNode for Attribute() | zipslip_bad.py:11:25:11:29 | ControlFlowNode for entry | Extraction of zipfile from $@ | zipslip_bad.py:8:10:8:31 | ControlFlowNode for Attribute() | a potentially untrusted source |
2431
| zipslip_bad.py:17:26:17:30 | ControlFlowNode for entry | zipslip_bad.py:14:10:14:28 | ControlFlowNode for Attribute() | zipslip_bad.py:17:26:17:30 | ControlFlowNode for entry | Extraction of zipfile from $@ | zipslip_bad.py:14:10:14:28 | ControlFlowNode for Attribute() | a potentially untrusted source |
2532
| zipslip_bad.py:23:29:23:33 | ControlFlowNode for entry | zipslip_bad.py:20:10:20:27 | ControlFlowNode for Attribute() | zipslip_bad.py:23:29:23:33 | ControlFlowNode for entry | Extraction of zipfile from $@ | zipslip_bad.py:20:10:20:27 | ControlFlowNode for Attribute() | a potentially untrusted source |
26-
| zipslip_bad.py:37:32:37:35 | ControlFlowNode for srcf | zipslip_bad.py:36:14:36:30 | ControlFlowNode for Attribute() | zipslip_bad.py:37:32:37:35 | ControlFlowNode for srcf | Extraction of zipfile from $@ | zipslip_bad.py:36:14:36:30 | ControlFlowNode for Attribute() | a potentially untrusted source |
33+
| zipslip_bad.py:30:25:30:25 | ControlFlowNode for x | zipslip_bad.py:27:10:27:22 | ControlFlowNode for Attribute() | zipslip_bad.py:30:25:30:25 | ControlFlowNode for x | Extraction of zipfile from $@ | zipslip_bad.py:27:10:27:22 | ControlFlowNode for Attribute() | a potentially untrusted source |
34+
| zipslip_bad.py:37:32:37:32 | ControlFlowNode for x | zipslip_bad.py:34:16:34:28 | ControlFlowNode for Attribute() | zipslip_bad.py:37:32:37:32 | ControlFlowNode for x | Extraction of zipfile from $@ | zipslip_bad.py:34:16:34:28 | ControlFlowNode for Attribute() | a potentially untrusted source |

0 commit comments

Comments
 (0)