Thanks to visit codestin.com
Credit goes to github.com

Skip to content

Commit ff5d680

Browse files
committed
Add missing substitution description
1 parent 8fbd8c5 commit ff5d680

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

java/ql/src/experimental/Security/CWE/CWE-208/TimingAttackAgainstHeader.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -69,4 +69,4 @@ class NonConstantTimeComparisonConfig extends TaintTracking::Configuration {
6969
from DataFlow::PathNode source, DataFlow::PathNode sink, NonConstantTimeComparisonConfig conf
7070
where conf.hasFlowPath(source, sink)
7171
select sink.getNode(), source, sink, "Possible timing attack against $@ validation.",
72-
source.getNode()
72+
source.getNode(), "client-supplied token"

0 commit comments

Comments
 (0)