Commit 3293a55
committed
require arguments to be shell interpreted to be flagged by indirect-command-injection
1 parent b46983a commit 3293a55
File tree
2 files changed
+8
-2
lines changed- javascript/ql
- lib/semmle/javascript/security/dataflow
- test/query-tests/Security/CWE-078/IndirectCommandInjection
2 files changed
+8
-2
lines changedLines changed: 6 additions & 2 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
199 | 199 | | |
200 | 200 | | |
201 | 201 | | |
202 | | - | |
| 202 | + | |
203 | 203 | | |
204 | 204 | | |
205 | | - | |
| 205 | + | |
| 206 | + | |
| 207 | + | |
| 208 | + | |
| 209 | + | |
206 | 210 | | |
207 | 211 | | |
Lines changed: 2 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
144 | 144 | | |
145 | 145 | | |
146 | 146 | | |
| 147 | + | |
| 148 | + | |
147 | 149 | | |
0 commit comments