CodeQL library for Java
codeql/java-all 0.4.4 (changelog, source)
Search

Module JndiInjection

Provides classes to reason about JNDI injection vulnerabilities.

Import path

import semmle.code.java.security.JndiInjection

Imports

java

Provides all default Java QL imports.

Classes

JndiInjectionAdditionalTaintStep

A unit class for adding additional taint steps.

JndiInjectionSink

A data flow sink for unvalidated user input that is used in JNDI lookup.