|
6 | 6 | | CommandInjection2.go:15:34:15:88 | []type{args} [array] | CommandInjection2.go:15:34:15:88 | call to Sprintf | provenance | MaD:245 |
|
7 | 7 | | CommandInjection2.go:15:67:15:75 | imageName | CommandInjection2.go:15:34:15:88 | []type{args} [array] | provenance | |
|
8 | 8 | | CommandInjection2.go:15:67:15:75 | imageName | CommandInjection2.go:15:34:15:88 | call to Sprintf | provenance | FunctionModel |
|
| 9 | +| CommandInjection2.go:41:15:41:21 | selection of URL | CommandInjection2.go:41:15:41:29 | call to Query | provenance | MaD:735 | |
| 10 | +| CommandInjection2.go:41:15:41:29 | call to Query | CommandInjection2.go:44:67:44:75 | imageName | provenance | | |
| 11 | +| CommandInjection2.go:44:34:44:88 | []type{args} [array] | CommandInjection2.go:44:34:44:88 | call to Sprintf | provenance | MaD:245 | |
| 12 | +| CommandInjection2.go:44:67:44:75 | imageName | CommandInjection2.go:44:34:44:88 | []type{args} [array] | provenance | | |
| 13 | +| CommandInjection2.go:44:67:44:75 | imageName | CommandInjection2.go:44:34:44:88 | call to Sprintf | provenance | FunctionModel | |
9 | 14 | | CommandInjection.go:9:13:9:19 | selection of URL | CommandInjection.go:9:13:9:27 | call to Query | provenance | MaD:735 |
|
10 | 15 | | CommandInjection.go:9:13:9:27 | call to Query | CommandInjection.go:10:22:10:28 | cmdName | provenance | |
|
11 | 16 | | GitSubcommands.go:11:13:11:19 | selection of URL | GitSubcommands.go:11:13:11:27 | call to Query | provenance | MaD:735 |
|
@@ -115,6 +120,11 @@ nodes
|
115 | 120 | | CommandInjection2.go:15:34:15:88 | []type{args} [array] | semmle.label | []type{args} [array] |
|
116 | 121 | | CommandInjection2.go:15:34:15:88 | call to Sprintf | semmle.label | call to Sprintf |
|
117 | 122 | | CommandInjection2.go:15:67:15:75 | imageName | semmle.label | imageName |
|
| 123 | +| CommandInjection2.go:41:15:41:21 | selection of URL | semmle.label | selection of URL | |
| 124 | +| CommandInjection2.go:41:15:41:29 | call to Query | semmle.label | call to Query | |
| 125 | +| CommandInjection2.go:44:34:44:88 | []type{args} [array] | semmle.label | []type{args} [array] | |
| 126 | +| CommandInjection2.go:44:34:44:88 | call to Sprintf | semmle.label | call to Sprintf | |
| 127 | +| CommandInjection2.go:44:67:44:75 | imageName | semmle.label | imageName | |
118 | 128 | | CommandInjection.go:9:13:9:19 | selection of URL | semmle.label | selection of URL |
|
119 | 129 | | CommandInjection.go:9:13:9:27 | call to Query | semmle.label | call to Query |
|
120 | 130 | | CommandInjection.go:10:22:10:28 | cmdName | semmle.label | cmdName |
|
@@ -211,6 +221,7 @@ subpaths
|
211 | 221 | #select
|
212 | 222 | | ArgumentInjection.go:10:31:10:34 | path | ArgumentInjection.go:9:10:9:16 | selection of URL | ArgumentInjection.go:10:31:10:34 | path | This command depends on a $@. | ArgumentInjection.go:9:10:9:16 | selection of URL | user-provided value |
|
213 | 223 | | CommandInjection2.go:15:34:15:88 | call to Sprintf | CommandInjection2.go:13:15:13:21 | selection of URL | CommandInjection2.go:15:34:15:88 | call to Sprintf | This command depends on a $@. | CommandInjection2.go:13:15:13:21 | selection of URL | user-provided value |
|
| 224 | +| CommandInjection2.go:44:34:44:88 | call to Sprintf | CommandInjection2.go:41:15:41:21 | selection of URL | CommandInjection2.go:44:34:44:88 | call to Sprintf | This command depends on a $@. | CommandInjection2.go:41:15:41:21 | selection of URL | user-provided value | |
214 | 225 | | CommandInjection.go:10:22:10:28 | cmdName | CommandInjection.go:9:13:9:19 | selection of URL | CommandInjection.go:10:22:10:28 | cmdName | This command depends on a $@. | CommandInjection.go:9:13:9:19 | selection of URL | user-provided value |
|
215 | 226 | | GitSubcommands.go:13:31:13:37 | tainted | GitSubcommands.go:11:13:11:19 | selection of URL | GitSubcommands.go:13:31:13:37 | tainted | This command depends on a $@. | GitSubcommands.go:11:13:11:19 | selection of URL | user-provided value |
|
216 | 227 | | GitSubcommands.go:14:31:14:37 | tainted | GitSubcommands.go:11:13:11:19 | selection of URL | GitSubcommands.go:14:31:14:37 | tainted | This command depends on a $@. | GitSubcommands.go:11:13:11:19 | selection of URL | user-provided value |
|
|
0 commit comments