Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit 80e91cc

Browse files
committed
C#: Disable field flow for cs/inappropriate-encoding
1 parent 14378ee commit 80e91cc

1 file changed

Lines changed: 2 additions & 0 deletions

File tree

csharp/ql/src/Security Features/CWE-838/InappropriateEncoding.ql

Lines changed: 2 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -62,6 +62,8 @@ abstract class RequiresEncodingConfiguration extends TaintTracking2::Configurati
6262
override predicate isSink(Node sink) { this.requiresEncoding(sink) }
6363

6464
override predicate isSanitizer(Node sanitizer) { this.isPossibleEncodedValue(sanitizer.asExpr()) }
65+
66+
override int fieldFlowBranchLimit() { result = 0 }
6567
}
6668

6769
/** An encoded value, for example a call to `HttpServerUtility.HtmlEncode`. */

0 commit comments

Comments
 (0)