CodeQL library for Java/Kotlin
codeql/java-all 0.9.2-dev (changelog, source)
Search

Module ExecTaintedLocalQuery

Provides a taint-tracking configuration to reason about use of externally controlled strings for command injection vulnerabilities.

Import path

import semmle.code.java.security.ExecTaintedLocalQuery

Imports

java

Provides all default Java QL imports.

Modules

ExecTaintedLocalConfig

A taint-tracking configuration to reason about use of externally controlled strings to make command line commands.

Aliases

ExecTaintedLocalFlow

Taint-tracking flow for use of externally controlled strings to make command line commands.