File tree Expand file tree Collapse file tree 2 files changed +1
-5
lines changed
csharp/ql/test/query-tests/Security Features/CWE-117 Expand file tree Collapse file tree 2 files changed +1
-5
lines changed Original file line number Diff line number Diff line change 55| LogForging.cs:17:27:17:61 | access to indexer : String | LogForging.cs:20:21:20:43 | ... + ... |
66| LogForging.cs:17:27:17:61 | access to indexer : String | LogForging.cs:26:50:26:72 | ... + ... |
77| LogForgingAsp.cs:8:32:8:39 | username : String | LogForgingAsp.cs:12:21:12:43 | ... + ... |
8- | LogForgingAsp.cs:15:34:15:37 | date : DateTime | LogForgingAsp.cs:19:21:19:64 | $"..." |
98nodes
109| LogForging.cs:17:27:17:49 | access to property QueryString : NameValueCollection | semmle.label | access to property QueryString : NameValueCollection |
1110| LogForging.cs:17:27:17:61 | access to indexer : String | semmle.label | access to indexer : String |
1211| LogForging.cs:20:21:20:43 | ... + ... | semmle.label | ... + ... |
1312| LogForging.cs:26:50:26:72 | ... + ... | semmle.label | ... + ... |
1413| LogForgingAsp.cs:8:32:8:39 | username : String | semmle.label | username : String |
1514| LogForgingAsp.cs:12:21:12:43 | ... + ... | semmle.label | ... + ... |
16- | LogForgingAsp.cs:15:34:15:37 | date : DateTime | semmle.label | date : DateTime |
17- | LogForgingAsp.cs:19:21:19:64 | $"..." | semmle.label | $"..." |
1815subpaths
1916#select
2017| LogForging.cs:20:21:20:43 | ... + ... | LogForging.cs:17:27:17:49 | access to property QueryString : NameValueCollection | LogForging.cs:20:21:20:43 | ... + ... | $@ flows to log entry. | LogForging.cs:17:27:17:49 | access to property QueryString | User-provided value |
2118| LogForging.cs:26:50:26:72 | ... + ... | LogForging.cs:17:27:17:49 | access to property QueryString : NameValueCollection | LogForging.cs:26:50:26:72 | ... + ... | $@ flows to log entry. | LogForging.cs:17:27:17:49 | access to property QueryString | User-provided value |
2219| LogForgingAsp.cs:12:21:12:43 | ... + ... | LogForgingAsp.cs:8:32:8:39 | username : String | LogForgingAsp.cs:12:21:12:43 | ... + ... | $@ flows to log entry. | LogForgingAsp.cs:8:32:8:39 | username | User-provided value |
23- | LogForgingAsp.cs:19:21:19:64 | $"..." | LogForgingAsp.cs:15:34:15:37 | date : DateTime | LogForgingAsp.cs:19:21:19:64 | $"..." | $@ flows to log entry. | LogForgingAsp.cs:15:34:15:37 | date | User-provided value |
Original file line number Diff line number Diff line change @@ -15,7 +15,7 @@ public void Action1(string username)
1515 public void Action1 ( DateTime date )
1616 {
1717 var logger = new ILogger ( ) ;
18- // GOOD: DateTime is a sanitizer. (FALSE POSITIVE)
18+ // GOOD: DateTime is a sanitizer.
1919 logger . Warn ( $ "Warning about the date: { date : yyyy-MM-dd} ") ;
2020 }
2121}
You can’t perform that action at this time.
0 commit comments