Module ExceptionXssConfig
A taint-tracking configuration for reasoning about XSS with possible exceptional flow. Flow states are used to ensure that we only report taint-flow that has been thrown in an exception.
Import path
import semmle.javascript.security.dataflow.ExceptionXssQuery
Predicates
accessPathLimit | Gets the access path limit. |
isAdditionalFlowStep | Holds if data may flow from |
isBarrier | Holds if data flow through |
isSink | Holds if |
isSource | Holds if |
observeDiffInformedIncrementalMode | Holds if sources and sinks should be filtered to only include those that may lead to a flow path with either a source or a sink in the location range given by |
Aliases
FlowState | A flow state to associate with a tracked value. |