File tree Expand file tree Collapse file tree 6 files changed +11
-11
lines changed
python/ql/src/semmle/python/security/dataflow Expand file tree Collapse file tree 6 files changed +11
-11
lines changed Original file line number Diff line number Diff line change 11/**
2- * Provides a taint-tracking configuration for reasoning about code injection
2+ * Provides a taint-tracking configuration for detecting code injection
33 * vulnerabilities.
44 */
55
@@ -10,7 +10,7 @@ import semmle.python.Concepts
1010import semmle.python.dataflow.new.RemoteFlowSources
1111
1212/**
13- * A taint-tracking configuration for reasoning about code injection vulnerabilities.
13+ * A taint-tracking configuration for detecting code injection vulnerabilities.
1414 */
1515class CodeInjectionConfiguration extends TaintTracking:: Configuration {
1616 CodeInjectionConfiguration ( ) { this = "CodeInjectionConfiguration" }
Original file line number Diff line number Diff line change 11/**
2- * Provides a taint-tracking configuration for reasoning about command injection
2+ * Provides a taint-tracking configuration for detecting command injection
33 * vulnerabilities.
44 */
55
@@ -10,7 +10,7 @@ import semmle.python.Concepts
1010import semmle.python.dataflow.new.RemoteFlowSources
1111
1212/**
13- * A taint-tracking configuration for reasoning about command injection vulnerabilities.
13+ * A taint-tracking configuration for detecting command injection vulnerabilities.
1414 */
1515class CommandInjectionConfiguration extends TaintTracking:: Configuration {
1616 CommandInjectionConfiguration ( ) { this = "CommandInjectionConfiguration" }
Original file line number Diff line number Diff line change 11/**
2- * Provides a taint-tracking configuration for reasoning about path injection
2+ * Provides a taint-tracking configuration for detecting path injection
33 * vulnerabilities.
44 *
55 * We detect cases where a user-controlled path is used in an unsafe manner,
Original file line number Diff line number Diff line change 11/**
2- * Provides a taint-tracking configuration for reasoning about reflected server-side
2+ * Provides a taint-tracking configuration for detecting reflected server-side
33 * cross-site scripting vulnerabilities.
44 */
55
@@ -10,7 +10,7 @@ import semmle.python.Concepts
1010import semmle.python.dataflow.new.RemoteFlowSources
1111
1212/**
13- * A taint-tracking configuration for reasoning about reflected server-side cross-site
13+ * A taint-tracking configuration for detecting reflected server-side cross-site
1414 * scripting vulnerabilities.
1515 */
1616class ReflectedXssConfiguration extends TaintTracking:: Configuration {
Original file line number Diff line number Diff line change 11/**
2- * Provides a taint-tracking configuration for reasoning about SQL injection
2+ * Provides a taint-tracking configuration for detecting SQL injection
33 * vulnerabilities.
44 */
55
@@ -10,7 +10,7 @@ import semmle.python.Concepts
1010import semmle.python.dataflow.new.RemoteFlowSources
1111
1212/**
13- * A taint-tracking configuration for reasoning about SQL injection vulnerabilities.
13+ * A taint-tracking configuration for detecting SQL injection vulnerabilities.
1414 */
1515class SQLInjectionConfiguration extends TaintTracking:: Configuration {
1616 SQLInjectionConfiguration ( ) { this = "SQLInjectionConfiguration" }
Original file line number Diff line number Diff line change 11/**
2- * Provides a taint-tracking configuration for reasoning about arbitrary code execution
2+ * Provides a taint-tracking configuration for detecting arbitrary code execution
33 * vulnerabilities due to deserializing user-controlled data.
44 */
55
@@ -10,7 +10,7 @@ import semmle.python.Concepts
1010import semmle.python.dataflow.new.RemoteFlowSources
1111
1212/**
13- * A taint-tracking configuration for reasoning about arbitrary code execution
13+ * A taint-tracking configuration for detecting arbitrary code execution
1414 * vulnerabilities due to deserializing user-controlled data.
1515 */
1616class UnsafeDeserializationConfiguration extends TaintTracking:: Configuration {
You can’t perform that action at this time.
0 commit comments