Skip to content
Discussion options

You must be logged in to vote

Another option is to use DataFlow::Global instead of TaintTracking::Global. Then you will only get expressions that actually flow to the sink, without being modified in some way first.

Replies: 2 comments 3 replies

Comment options

You must be logged in to vote
1 reply
@elManto
Comment options

Comment options

You must be logged in to vote
2 replies
@owen-mc
Comment options

Answer selected by elManto
@elManto
Comment options

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
3 participants