CodeQL library for Ruby
codeql/ruby-all 0.8.15-dev (changelog, source)
Search

Module StoredXss

Provides default sources, sinks and sanitizers for detecting stored cross-site scripting (XSS) vulnerabilities.

Import path

import codeql.ruby.security.XSS

Classes

Source

A data flow source for stored XSS vulnerabilities.

Aliases

Sanitizer

A sanitizer for stored XSS vulnerabilities.

Sink

A data flow sink for stored XSS vulnerabilities.

isAdditionalXssTaintStep

An additional step that preserves dataflow in the context of stored XSS.