CodeQL library for C#
codeql/csharp-all 3.1.1-dev (changelog, source)
Search

Member predicate SerializableType::getASerializedField

A field whose value is restored during a deserialization, rendering it potentially untrusted.

Field getASerializedField()