CodeQL library for Java/Kotlin
codeql/java-all 0.9.0 (changelog, source)
Search

Module TemplateInjection

Definitions related to the server-side template injection (SST) query.

Import path

import semmle.code.java.security.TemplateInjection

Imports

java

Provides all default Java QL imports.

Classes

TemplateInjectionAdditionalTaintStep

A unit class for adding additional taint steps.

TemplateInjectionSanitizer

A sanitizer for server-side template injection (SST) vulnerabilities.

TemplateInjectionSanitizerWithState

DEPRECATED: Open-ended flow state is not intended to be part of the extension points.

TemplateInjectionSink

A sink for server-side template injection (SST) vulnerabilities.

TemplateInjectionSource

A source for server-side template injection (SST) vulnerabilities.