CodeQL library for JavaScript/TypeScript
codeql/javascript-all 0.8.15-dev (changelog, source)
Search

Module UnsafeShellCommandConstructionCustomizations

Provides default sources, sinks and sanitizers for reasoning about shell command constructed from library input vulnerabilities, as well as extension points for adding your own.

Import path

import semmle.javascript.security.dataflow.UnsafeShellCommandConstructionCustomizations

Imports

javascript

Provides classes for working with JavaScript programs, as well as JSON, YAML and HTML.

Modules

UnsafeShellCommandConstruction

Module containing sources, sinks, and sanitizers for shell command constructed from library input.