CodeQL library for Ruby
codeql/ruby-all 0.8.15-dev (changelog, source)
Search

Module PathInjection

Import path

import codeql.ruby.security.PathInjectionCustomizations

Classes

FileSystemAccessAsSink

A file system access, considered as a flow sink.

RemoteFlowSourceAsSource

A source of remote user input, considered as a flow source.

Sanitizer

A sanitizer for path injection vulnerabilities.

Sink

A data flow sink for path injection vulnerabilities.

Source

A data flow source for path injection vulnerabilities.

StringConstArrayInclusionCallAsSanitizer

An inclusion check against an array of constant strings, considered as a sanitizer-guard.

StringConstCompareAsSanitizer

A comparison with a constant string, considered as a sanitizer-guard.