File tree
117 files changed
+2421
-2341
lines changed- .github/workflows
- javascript
- frameworks
- cap
- ext
- lib
- advanced_security/javascript/frameworks/cap
- src
- cqlinjection
- loginjection
- path-traversal
- sensitive-exposure
- test
- models/cds
- remoteflowsources
- srv
- userdefinedservice
- utils
- queries
- cqlinjection
- loginjection
- log-injection-not-depending-on-request
- log-injection-type-sanitized
- log-injection-with-complete-protocol-none
- log-injection-with-service1-protocol-none
- log-injection-with-service2-protocol-none
- log-injection-without-protocol-none
- path-traversal
- sensitive-exposure
- sensitive-exposure-js-all-sinks
- ui5
- ext
- lib
- advanced_security/javascript/frameworks/ui5
- dataflow
- src
- UI5FormulaInjection
- UI5LogInjection
- UI5PathInjection
- UI5Xss
- test
- models
- sink
- summary
- queries
- UI5FormulaInjection/formula-custom-control-sanitized
- UI5LogInjection
- avoid-duplicate-alerts
- log-custom-control-sanitized
- log-entry-flows-to-notifications
- log-entry-flows-to-sinks
- log-html-control-df
- UI5PathInjection
- path-custom-control-property-sanitized
- path-custom-control-sanitized
- path-html-control-df
- UI5Xss
- avoid-duplicate-alerts
- xss-book-example
- xss-event-handlers
- xss-html-control-df
- xss-html-control
- xss-html-external-model
- xss-html-view
- xss-js-view
- xss-json-view
- xss-webc-control
- xsjs
- ext
- lib
- advanced_security/javascript/frameworks/xsjs
- src
- XSJSReflectedXss
- XSJSSqlInjection
- XSJSUrlRedirect
- test
- queries
- XSJSReflectedXss
- XSJSSqlInjection
- XSJSUrlRedirect
- XSJSZipSlip
- heuristic-models
- ext
- tests
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
117 files changed
+2421
-2341
lines changedLarge diffs are not rendered by default.
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
1 | 1 | | |
2 | 2 | | |
3 | 3 | | |
4 | | - | |
| 4 | + | |
5 | 5 | | |
6 | 6 | | |
javascript/frameworks/cap/lib/advanced_security/javascript/frameworks/cap/CAPCqlInjectionQuery.qll
Lines changed: 5 additions & 7 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
166 | 166 | | |
167 | 167 | | |
168 | 168 | | |
169 | | - | |
170 | | - | |
| 169 | + | |
| 170 | + | |
171 | 171 | | |
172 | | - | |
| 172 | + | |
173 | 173 | | |
174 | | - | |
| 174 | + | |
175 | 175 | | |
176 | | - | |
177 | | - | |
178 | | - | |
| 176 | + | |
179 | 177 | | |
180 | 178 | | |
181 | 179 | | |
| |||
javascript/frameworks/cap/lib/advanced_security/javascript/frameworks/cap/CAPLogInjectionQuery.qll
Lines changed: 27 additions & 6 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
22 | 22 | | |
23 | 23 | | |
24 | 24 | | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
25 | 29 | | |
26 | 30 | | |
27 | 31 | | |
| |||
43 | 47 | | |
44 | 48 | | |
45 | 49 | | |
46 | | - | |
47 | | - | |
48 | | - | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
49 | 53 | | |
50 | 54 | | |
51 | 55 | | |
52 | 56 | | |
53 | | - | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
54 | 69 | | |
55 | 70 | | |
56 | | - | |
| 71 | + | |
| 72 | + | |
| 73 | + | |
| 74 | + | |
| 75 | + | |
| 76 | + | |
| 77 | + | |
57 | 78 | | |
58 | 79 | | |
59 | 80 | | |
60 | | - | |
| 81 | + | |
61 | 82 | | |
Lines changed: 12 additions & 22 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
11 | 13 | | |
12 | | - | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
13 | 17 | | |
14 | | - | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
15 | 21 | | |
16 | | - | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
17 | 25 | | |
18 | 26 | | |
19 | 27 | | |
| |||
67 | 75 | | |
68 | 76 | | |
69 | 77 | | |
70 | | - | |
71 | | - | |
72 | | - | |
73 | | - | |
74 | | - | |
75 | | - | |
76 | | - | |
77 | | - | |
78 | | - | |
79 | | - | |
80 | | - | |
81 | | - | |
82 | | - | |
83 | | - | |
84 | | - | |
85 | | - | |
86 | | - | |
87 | | - | |
Lines changed: 122 additions & 8 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
177 | 177 | | |
178 | 178 | | |
179 | 179 | | |
180 | | - | |
| 180 | + | |
| 181 | + | |
| 182 | + | |
| 183 | + | |
| 184 | + | |
| 185 | + | |
| 186 | + | |
| 187 | + | |
| 188 | + | |
| 189 | + | |
| 190 | + | |
| 191 | + | |
| 192 | + | |
| 193 | + | |
| 194 | + | |
| 195 | + | |
| 196 | + | |
| 197 | + | |
| 198 | + | |
| 199 | + | |
| 200 | + | |
181 | 201 | | |
182 | 202 | | |
183 | 203 | | |
| |||
294 | 314 | | |
295 | 315 | | |
296 | 316 | | |
| 317 | + | |
| 318 | + | |
| 319 | + | |
| 320 | + | |
| 321 | + | |
| 322 | + | |
| 323 | + | |
| 324 | + | |
| 325 | + | |
| 326 | + | |
| 327 | + | |
| 328 | + | |
| 329 | + | |
| 330 | + | |
| 331 | + | |
| 332 | + | |
| 333 | + | |
| 334 | + | |
| 335 | + | |
| 336 | + | |
| 337 | + | |
| 338 | + | |
| 339 | + | |
| 340 | + | |
| 341 | + | |
| 342 | + | |
| 343 | + | |
| 344 | + | |
| 345 | + | |
| 346 | + | |
| 347 | + | |
| 348 | + | |
| 349 | + | |
| 350 | + | |
| 351 | + | |
| 352 | + | |
| 353 | + | |
| 354 | + | |
| 355 | + | |
| 356 | + | |
| 357 | + | |
| 358 | + | |
| 359 | + | |
297 | 360 | | |
298 | 361 | | |
299 | 362 | | |
300 | 363 | | |
301 | 364 | | |
302 | 365 | | |
| 366 | + | |
303 | 367 | | |
304 | 368 | | |
305 | 369 | | |
| |||
308 | 372 | | |
309 | 373 | | |
310 | 374 | | |
| 375 | + | |
| 376 | + | |
| 377 | + | |
311 | 378 | | |
312 | 379 | | |
313 | 380 | | |
| |||
347 | 414 | | |
348 | 415 | | |
349 | 416 | | |
350 | | - | |
| 417 | + | |
351 | 418 | | |
352 | 419 | | |
353 | 420 | | |
| |||
356 | 423 | | |
357 | 424 | | |
358 | 425 | | |
359 | | - | |
360 | | - | |
| 426 | + | |
| 427 | + | |
| 428 | + | |
361 | 429 | | |
362 | 430 | | |
363 | 431 | | |
364 | 432 | | |
365 | 433 | | |
366 | | - | |
| 434 | + | |
367 | 435 | | |
368 | 436 | | |
369 | 437 | | |
| |||
506 | 574 | | |
507 | 575 | | |
508 | 576 | | |
509 | | - | |
| 577 | + | |
510 | 578 | | |
511 | 579 | | |
512 | 580 | | |
| |||
539 | 607 | | |
540 | 608 | | |
541 | 609 | | |
542 | | - | |
| 610 | + | |
| 611 | + | |
| 612 | + | |
| 613 | + | |
| 614 | + | |
| 615 | + | |
| 616 | + | |
| 617 | + | |
| 618 | + | |
| 619 | + | |
| 620 | + | |
543 | 621 | | |
544 | | - | |
| 622 | + | |
| 623 | + | |
| 624 | + | |
545 | 625 | | |
546 | 626 | | |
547 | 627 | | |
| |||
554 | 634 | | |
555 | 635 | | |
556 | 636 | | |
| 637 | + | |
| 638 | + | |
| 639 | + | |
| 640 | + | |
| 641 | + | |
| 642 | + | |
| 643 | + | |
| 644 | + | |
| 645 | + | |
| 646 | + | |
| 647 | + | |
| 648 | + | |
| 649 | + | |
| 650 | + | |
| 651 | + | |
| 652 | + | |
| 653 | + | |
| 654 | + | |
| 655 | + | |
| 656 | + | |
| 657 | + | |
| 658 | + | |
| 659 | + | |
| 660 | + | |
| 661 | + | |
| 662 | + | |
| 663 | + | |
| 664 | + | |
| 665 | + | |
| 666 | + | |
| 667 | + | |
| 668 | + | |
| 669 | + | |
| 670 | + | |
557 | 671 | | |
558 | 672 | | |
559 | 673 | | |
| |||
Lines changed: 6 additions & 2 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
30 | 30 | | |
31 | 31 | | |
32 | 32 | | |
33 | | - | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
34 | 36 | | |
35 | 37 | | |
36 | 38 | | |
| |||
54 | 56 | | |
55 | 57 | | |
56 | 58 | | |
57 | | - | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
58 | 62 | | |
59 | 63 | | |
60 | 64 | | |
| |||
Lines changed: 9 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
39 | 39 | | |
40 | 40 | | |
41 | 41 | | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
0 commit comments