CodeQL library for Java/Kotlin
codeql/java-all 0.9.2-dev (changelog, source)
Search

Module ImproperValidationOfArrayIndexLocalConfig

A taint-tracking configuration to reason about improper validation of local user-provided array index.

Import path

import semmle.code.java.security.ImproperValidationOfArrayIndexLocalQuery

Predicates

isBarrier

Holds if data flow through node is prohibited. This completely removes node from the data flow graph.

isBarrierIn

Holds if data flow into node is prohibited.

isSink

Holds if sink is a relevant data flow sink.

isSource

Holds if source is a relevant data flow source.