CodeQL library for JavaScript/TypeScript
codeql/javascript-all 0.8.14 (changelog, source)
Search

Module InsecureDownloadCustomizations

Provides default sources, sinks and sanitizers for reasoning about download of sensitive file through insecure connection, as well as extension points for adding your own.

Import path

import semmle.javascript.security.dataflow.InsecureDownloadCustomizations

Imports

javascript

Provides classes for working with JavaScript programs, as well as JSON, YAML and HTML.

Modules

InsecureDownload

Classes and predicates for reasoning about download of sensitive file through insecure connection vulnerabilities.