CodeQL library for Ruby
codeql/ruby-all 0.8.15-dev (changelog, source)
Search

Module TemplateInjection

Provides default sources, sinks and sanitizers for detecting Server Side Template Injections, as well as extension points for adding your own

Import path

import codeql.ruby.security.TemplateInjectionCustomizations

Classes

Sanitizer

A sanitizer for SSTI vulnerabilities.

Sink

A data flow sink for SSTI vulnerabilities

Source

A data flow source for SSTI vulnerabilities