@@ -784,7 +784,7 @@ class TransformerFactorySource extends XmlParserCall {
784784 override Expr getSink ( ) { result = this .getArgument ( 0 ) }
785785
786786 override predicate isSafe ( ) {
787- SafeTransformerFactoryFlow2 :: flowsTo ( DataFlow:: exprNode ( this .getQualifier ( ) ) )
787+ SafeTransformerFactoryFlow :: flowsTo ( DataFlow:: exprNode ( this .getQualifier ( ) ) )
788788 }
789789}
790790
@@ -803,7 +803,7 @@ private predicate safeTransformerFactoryNode(DataFlow::Node src) {
803803 src .asExpr ( ) instanceof SafeTransformerFactory
804804}
805805
806- private module SafeTransformerFactoryFlow2 = DataFlow:: SimpleGlobal< safeTransformerFactoryNode / 1 > ;
806+ private module SafeTransformerFactoryFlow = DataFlow:: SimpleGlobal< safeTransformerFactoryNode / 1 > ;
807807
808808/** A safely configured `TransformerFactory`. */
809809class SafeTransformerFactory extends VarAccess {
@@ -826,7 +826,7 @@ class SafeTransformer extends MethodCall {
826826 this .getMethod ( ) = m and
827827 m .getDeclaringType ( ) instanceof TransformerFactory and
828828 m .hasName ( "newTransformer" ) and
829- SafeTransformerFactoryFlow2 :: flowsTo ( DataFlow:: exprNode ( this .getQualifier ( ) ) )
829+ SafeTransformerFactoryFlow :: flowsTo ( DataFlow:: exprNode ( this .getQualifier ( ) ) )
830830 )
831831 }
832832}
@@ -849,7 +849,7 @@ class SaxTransformerFactoryNewXmlFilter extends XmlParserCall {
849849 override Expr getSink ( ) { result = this .getArgument ( 0 ) }
850850
851851 override predicate isSafe ( ) {
852- SafeTransformerFactoryFlow2 :: flowsTo ( DataFlow:: exprNode ( this .getQualifier ( ) ) )
852+ SafeTransformerFactoryFlow :: flowsTo ( DataFlow:: exprNode ( this .getQualifier ( ) ) )
853853 }
854854}
855855
0 commit comments