Skip to content

Commit ca3aaa8

Browse files
committed
Java: add change note for additional framework support
1 parent 64b2d33 commit ca3aaa8

File tree

1 file changed

+4
-0
lines changed

1 file changed

+4
-0
lines changed

change-notes/1.20/analysis-java.md

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -28,5 +28,9 @@
2828
* Taint tracking now includes additional default data-flow steps through
2929
collections, maps, and iterators. This affects all security queries, which
3030
can report more results based on such paths.
31+
* The `FlowSources` and `TaintTracking` libraries are extended to cover additional remote user
32+
input and taint steps from the Apache Thrift, Apache Struts, Guice and Protobuf frameworks.
33+
This affects all security queries, which may yield additional results on projects
34+
that use these frameworks.
3135

3236

0 commit comments

Comments
 (0)