Skip to content

Commit c0440cf

Browse files
authored
Merge pull request #1386 from asger-semmle/prototype-change-note
Approved by xiemaisi
2 parents d741e0b + a4a9e95 commit c0440cf

File tree

1 file changed

+1
-0
lines changed

1 file changed

+1
-0
lines changed

change-notes/1.21/analysis-javascript.md

Lines changed: 1 addition & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -27,6 +27,7 @@
2727

2828
| **Query** | **Tags** | **Purpose** |
2929
|-----------------------------------------------|------------------------------------------------------|-----------------------------------------------------------------------------------------------------------------------------------------------------------------------------|
30+
| Prototype pollution (`js/prototype-pollution`) | security, external/cwe-250, external/cwe-400 | Highlights code that allows an attacker to modify a built-in prototype object through an unsanitized recursive merge function. The results are shown on LGTM by default. |
3031

3132
## Changes to existing queries
3233

0 commit comments

Comments
 (0)