We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent df62cf8 commit 2b0b285Copy full SHA for 2b0b285
ruby/ql/lib/change-notes/2023-07-05-rack-response.md
@@ -0,0 +1,5 @@
1
+---
2
+category: minorAnalysis
3
4
+* Query parameters and cookies from `Rack::Response` objects are recognized as potential sources of remote flow input.
5
+* Calls to `Rack::Utils.parse_query` now propagate taint.
0 commit comments