CodeQL library for Java/Kotlin
codeql/java-all 7.7.3-dev (changelog, source)
Search

Module SpringBootActuatorsConfigQuery

Provides classes and predicates to reason about Spring Boot actuators exposed in configuration files.

Import path

import semmle.code.java.security.SpringBootActuatorsConfigQuery

Imports

java

Provides all default Java QL imports.

Predicates

exposesSensitiveEndpoint

Holds if JavaPropertyOption jpOption of a repository using SpringBootStarterActuatorDependency d exposes sensitive Spring Boot Actuator endpoints.

Classes

JavaPropertyOption

An option type that is either a singleton None or a Some wrapping the JavaProperty type.

SpringBootStarterActuatorDependency

A dependency with artifactId spring-boot-starter-actuator.