CodeQL library for Java
codeql/java-all 0.4.5 (changelog, source)
Search

Module SnakeYaml

Provides classes and predicates for working with the SnakeYaml serialization framework.

Import path

import semmle.code.java.frameworks.SnakeYaml

Imports

DataFlow

Provides classes for performing local (intra-procedural) and global (inter-procedural) data flow analyses.

DataFlow2

Provides classes for performing local (intra-procedural) and global (inter-procedural) data flow analyses.

DataFlow3

Provides classes for performing local (intra-procedural) and global (inter-procedural) data flow analyses.

java

Provides all default Java QL imports.

Classes

SafeSnakeYamlConstruction

An instance of SafeConstructor.

SnakeYamlSafeConstructor

The class org.yaml.snakeyaml.constructor.SafeConstructor.

UnsafeSnakeYamlParse

A call to a parse method of Yaml that allows arbitrary constructor to be called.

Yaml

The class org.yaml.snakeyaml.Yaml.