CodeQL library for Go
codeql/go-all 0.7.15-dev (changelog, source)
Search

Module TaintedPathCustomizations

Provides default sources, sinks and sanitizers for reasoning about path-traversal vulnerabilities, as well as extension points for adding your own.

Import path

import semmle.go.security.TaintedPathCustomizations

Imports

DataFlow

Provides a library for local (intra-procedural) and global (inter-procedural) data flow analysis.

RegexpCheck

Provides an implementation of a commonly used barrier guard for sanitizing untrusted URLs.

go

Provides classes for working with Go programs.

Modules

TaintedPath

Provides extension points for customizing the taint tracking configuration for reasoning about path-traversal vulnerabilities.