Thanks to visit codestin.com Credit goes to github.com
We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 260a228 commit adb5764Copy full SHA for adb5764
1 file changed
java/ql/src/semmle/code/java/security/UrlRedirect.qll
@@ -35,3 +35,17 @@ private class ApacheUrlRedirectSink extends UrlRedirectSink {
35
)
36
}
37
38
+
39
+/** A URL redirection sink from JAX-WS */
40
+private class JaxWsUrlRedirectSink extends UrlRedirectSink {
41
+ JaxWsUrlRedirectSink() {
42
+ exists(MethodAccess ma |
43
+ ma.getMethod()
44
+ .getDeclaringType()
45
+ .getAnAncestor()
46
+ .hasQualifiedName("javax.ws.rs.core", "Response") and
47
+ ma.getMethod().getName() in ["seeOther", "temporaryRedirect"] and
48
+ this.asExpr() = ma.getArgument(0)
49
+ )
50
+ }
51
+}
0 commit comments