CodeQL library for JavaScript/TypeScript
codeql/javascript-all 2.5.0 (changelog, source)
Search

Predicate UnsafeDynamicMethodAccess::unsafeFunction

DEPRECATED. Use FlowState::unsafeFunction() instead.

Gets the flow label describing values that may refer to an unsafe function as a result of an attacker-controlled property name.

Import path

import semmle.javascript.security.dataflow.UnsafeDynamicMethodAccessCustomizations
UnsafeFunction unsafeFunction()