CodeQL library for Java/Kotlin
codeql/java-all 0.9.2-dev (changelog, source)
Search

Predicate isSensitiveResultReceiver

Holds if there is a path from sensitive data at src to a result receiver at sink, and the receiver was obtained from an untrusted source recSrc.

Import path

import semmle.code.java.security.SensitiveResultReceiverQuery
predicate isSensitiveResultReceiver(PathNode src, PathNode sink, Node recSrc)