|
1 | 1 | /** |
2 | | - * Imports the standard library and all taint-tracking configuration classes from the security queries. |
| 2 | + * Imports the standard library and a selection of taint-tracking configuration classes |
| 3 | + * from the security queries. |
| 4 | + * |
| 5 | + * To enable flow summarization for other queries, import their configuration classes here. |
3 | 6 | */ |
4 | 7 |
|
5 | 8 | import javascript |
6 | | -import semmle.javascript.security.dataflow.BrokenCryptoAlgorithm |
7 | | -import semmle.javascript.security.dataflow.CleartextLogging |
8 | | -import semmle.javascript.security.dataflow.CleartextStorage |
9 | 9 | import semmle.javascript.security.dataflow.ClientSideUrlRedirect |
10 | 10 | import semmle.javascript.security.dataflow.CodeInjection |
11 | 11 | import semmle.javascript.security.dataflow.CommandInjection |
12 | | -import semmle.javascript.security.dataflow.ConditionalBypass |
13 | | -import semmle.javascript.security.dataflow.CorsMisconfigurationForCredentials |
14 | | -import semmle.javascript.security.dataflow.DifferentKindsComparisonBypass |
15 | 12 | import semmle.javascript.security.dataflow.DomBasedXss as DomBasedXss |
16 | | -import semmle.javascript.security.dataflow.FileAccessToHttp |
17 | | -import semmle.javascript.security.dataflow.HardcodedCredentials |
18 | | -import semmle.javascript.security.dataflow.InsecureRandomness |
19 | | -import semmle.javascript.security.dataflow.InsufficientPasswordHash |
20 | 13 | import semmle.javascript.security.dataflow.NosqlInjection |
21 | 14 | import semmle.javascript.security.dataflow.ReflectedXss as ReflectedXss |
22 | 15 | import semmle.javascript.security.dataflow.RegExpInjection |
23 | 16 | import semmle.javascript.security.dataflow.RemotePropertyInjection |
24 | | -import semmle.javascript.security.dataflow.RequestForgery |
25 | 17 | import semmle.javascript.security.dataflow.ServerSideUrlRedirect |
26 | 18 | import semmle.javascript.security.dataflow.SqlInjection |
27 | 19 | import semmle.javascript.security.dataflow.StackTraceExposure |
28 | 20 | import semmle.javascript.security.dataflow.StoredXss as StoredXss |
29 | 21 | import semmle.javascript.security.dataflow.TaintedFormatString |
30 | 22 | import semmle.javascript.security.dataflow.TaintedPath |
31 | | -import semmle.javascript.security.dataflow.TypeConfusionThroughParameterTampering |
32 | 23 | import semmle.javascript.security.dataflow.UnsafeDeserialization |
33 | 24 | import semmle.javascript.security.dataflow.XmlBomb |
34 | 25 | import semmle.javascript.security.dataflow.XpathInjection |
|
0 commit comments