Skip to content

Commit fbe20a9

Browse files
committed
Python: Add change note for tarslip query.
1 parent 39b7a69 commit fbe20a9

File tree

1 file changed

+17
-0
lines changed

1 file changed

+17
-0
lines changed
Lines changed: 17 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,17 @@
1+
# Improvements to Python analysis
2+
3+
4+
## General improvements
5+
6+
7+
8+
### Impact on existing queries.
9+
10+
11+
12+
## New queries
13+
14+
| **Query** | **Tags** | **Purpose** |
15+
|-----------|----------|-------------|
16+
| Arbitrary file write during tarfile extraction (`py/tarslip`) | security, external/cwe/cwe-022 | Finds instances where extracting from a tar archive can result in arbitrary file writes. Results are not shown on LGTM by default. |
17+

0 commit comments

Comments
 (0)