Open xssssrf opened 3 years ago
Acknowledged, this is a known limitation of how we currently model side-effects in Go. Is this causing you problems in practice, or is it just an oddity you noticed in synthetic code?
Acknowledged, this is a known limitation of how we currently model side-effects in Go. Is this causing you problems in practice, or is it just an oddity you noticed in synthetic code?
Just in synthetic code.
Test case:
The following code may have caused the false positives. codeql-go/ql/src/semmle/go/security/RequestForgery.qll