We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
rb/kernel-open
1 parent bf74481 commit d370b2aCopy full SHA for d370b2a
ruby/ql/src/queries/security/cwe-078/KernelOpen.ql
@@ -71,7 +71,7 @@ from
71
where
72
config.hasFlowPath(source, sink) and
73
sourceNode = source.getNode() and
74
- call.asExpr().getExpr().(MethodCall).getArgument(0) = sink.getNode().asExpr().getExpr()
+ call.getArgument(0) = sink.getNode()
75
select sink.getNode(), source, sink,
76
"This call to " + call.(Replacement).getFrom() + " depends on a . Replace it with " +
77
call.(Replacement).getTo() + ".", source.getNode(), "user-provided value"
0 commit comments