Skip to content

Commit ff5d680

Browse files
committed
Add missing substitution description
1 parent 8fbd8c5 commit ff5d680

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

java/ql/src/experimental/Security/CWE/CWE-208/TimingAttackAgainstHeader.ql

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -69,4 +69,4 @@ class NonConstantTimeComparisonConfig extends TaintTracking::Configuration {
6969
from DataFlow::PathNode source, DataFlow::PathNode sink, NonConstantTimeComparisonConfig conf
7070
where conf.hasFlowPath(source, sink)
7171
select sink.getNode(), source, sink, "Possible timing attack against $@ validation.",
72-
source.getNode()
72+
source.getNode(), "client-supplied token"

0 commit comments

Comments
 (0)