Module StringBreak
Provides extension points for customizing the taint tracking configuration for reasoning about unsafe-quoting vulnerabilities.
Import path
import semmle.go.security.StringBreakCustomizations
Classes
JsonMarshalAsSource | A call to |
Quote | A (single or double) quote. |
ReplaceSanitizer | An expression that is equivalent to |
Sanitizer | A sanitizer for unsafe-quoting vulnerabilities. |
Sink | A data flow sink for unsafe-quoting vulnerabilities. |
Source | A data flow source for unsafe-quoting vulnerabilities. |
StringConcatenationAsSink | A string concatenation with quotes, considered as a taint sink for unsafe quoting. |
UnmarshalSanitizer | A call to |