jf205 / codeql-starter

Starter workspace to use with the CodeQL extension for Visual Studio Code.
MIT License
0 stars 0 forks source link

Query run by jf205 against 27 `java` repositories #9

Open github-actions[bot] opened 2 years ago

github-actions[bot] commented 2 years ago

Query

Click to expand ```ql /** * @name Log Injection * @description Building log entries from user-controlled data is vulnerable to * insertion of forged log entries by a malicious user. * @kind path-problem * @problem.severity error * @precision high * @id java/log-injection * @tags security * external/cwe/cwe-117 */ import java import DataFlow::PathGraph import experimental.semmle.code.java.Logging import semmle.code.java.dataflow.FlowSources /** * A taint-tracking configuration for tracking untrusted user input used in log entries. */ private class LogInjectionConfiguration extends TaintTracking::Configuration { LogInjectionConfiguration() { this = "Log Injection" } override predicate isSource(DataFlow::Node source) { source instanceof RemoteFlowSource } override predicate isSink(DataFlow::Node sink) { sink.asExpr() = any(LoggingCall c).getALogArgument() } override predicate isSanitizer(DataFlow::Node node) { node.getType() instanceof BoxedType or node.getType() instanceof PrimitiveType } } from LogInjectionConfiguration cfg, DataFlow::PathNode source, DataFlow::PathNode sink where cfg.hasFlowPath(source, sink) select sink.getNode(), source, sink, "$@ flows to log entry.", source.getNode(), "User-provided value" ```

Results

Repository Results
killbill/killbill 956 result(s)
apache/cxf 43 result(s)
odpi/egeria 40 result(s)
hapifhir/hapi-fhir 29 result(s)
apache/myfaces-tobago 28 result(s)
B3Partners/tailormap 15 result(s)
Yubico/java-webauthn-server 15 result(s)
apache/incubator-shenyu 13 result(s)
jnidzwetzki/bboxdb 11 result(s)
oracle/weblogic-kubernetes-operator 6 result(s)
NCI-Agency/anet 5 result(s)
nextcloud/news-android 2 result(s)
netty/netty No results
apple/servicetalk No results
Hongbo-Miao/hongbomiao.com No results
alfio-event/alf.io No results
gradle/gradle No results
diffplug/spotless No results
qiniu/java-sdk No results
Hack23/cia No results
MegaMek/mekhq No results
bndtools/bnd No results
reactor/reactor-netty No results
redis/jedis No results
assertj/assertj-core No results
kubernetes-client/java No results
crate/crate No results
github-actions[bot] commented 2 years ago

killbill/killbill

- source sink - - -
serviceName json : BlockingStateJson serviceName $@ flows to log entry. json User-provided value
serviceName json : BlockingStateJson serviceName $@ flows to log entry. json User-provided value
serviceName json : BlockingStateJson serviceName $@ flows to log entry. json User-provided value
blockableId id : UUID blockableId $@ flows to log entry. id User-provided value
blockableId bundleId : UUID blockableId $@ flows to log entry. bundleId User-provided value
blockableId bundleId : UUID blockableId $@ flows to log entry. bundleId User-provided value
blockableId id : UUID blockableId $@ flows to log entry. id User-provided value
blockableId accountId : UUID blockableId $@ flows to log entry. accountId User-provided value
blockableId id : UUID blockableId $@ flows to log entry. id User-provided value
logLine bundleId : UUID logLine $@ flows to log entry. bundleId User-provided value
logLine json : BundleJson logLine $@ flows to log entry. json User-provided value
logLine json : BundleJson logLine $@ flows to log entry. json User-provided value
logLine billingPolicy : BillingActionPolicy logLine $@ flows to log entry. billingPolicy User-provided value
logLine id : UUID logLine $@ flows to log entry. id User-provided value
logLine json : BlockingStateJson logLine $@ flows to log entry. json User-provided value
logLine bundleId : UUID logLine $@ flows to log entry. bundleId User-provided value
logLine bundleId : UUID logLine $@ flows to log entry. bundleId User-provided value
logLine id : UUID logLine $@ flows to log entry. id User-provided value
logLine json : BlockingStateJson logLine $@ flows to log entry. json User-provided value
logLine accountId : UUID logLine $@ flows to log entry. accountId User-provided value
logLine entitlementPolicy : EntitlementActionPolicy logLine $@ flows to log entry. entitlementPolicy User-provided value
logLine billingPolicy : BillingActionPolicy logLine $@ flows to log entry. billingPolicy User-provided value
logLine id : UUID logLine $@ flows to log entry. id User-provided value
logLine json : BlockingStateJson logLine $@ flows to log entry. json User-provided value
logLine billingPolicy : BillingActionPolicy logLine $@ flows to log entry. billingPolicy User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
invoiceId invoiceId : UUID invoiceId $@ flows to log entry. invoiceId User-provided value
invoiceId invoiceId : UUID invoiceId $@ flows to log entry. invoiceId User-provided value
getAccountId(...) accountId : UUID getAccountId(...) $@ flows to log entry. accountId User-provided value
cacheName cacheName : String cacheName $@ flows to log entry. cacheName User-provided value
getPathInfo(...) getPathInfo(...) getPathInfo(...) $@ flows to log entry. getPathInfo(...) User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
accountId accountId : UUID accountId $@ flows to log entry. accountId User-provided value
toString(...) accountId : UUID toString(...) $@ flows to log entry. accountId User-provided value
toString(...) accountId : UUID toString(...) $@ flows to log entry. accountId User-provided value
pluginName pluginName : String pluginName $@ flows to log entry. pluginName User-provided value
pluginName pluginName : String pluginName $@ flows to log entry. pluginName User-provided value
pluginName pluginName : String pluginName $@ flows to log entry. pluginName User-provided value
searchKey searchKey : String searchKey $@ flows to log entry. searchKey User-provided value
... + ... pluginName : String ... + ... $@ flows to log entry. pluginName User-provided value
pluginName pluginName : String pluginName $@ flows to log entry. pluginName User-provided value
pluginName pluginName : String pluginName $@ flows to log entry. pluginName User-provided value
searchKey searchKey : String searchKey $@ flows to log entry. searchKey User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value
controlPluginName paymentControlPluginNames : List controlPluginName $@ flows to log entry. paymentControlPluginNames User-provided value

Results were truncated due to issue comment size limits. Showing 77 out of 956 results.

github-actions[bot] commented 2 years ago

apache/cxf

- source sink - - -
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getEntityStream(...) : InputStream ... + ... $@ flows to log entry. getEntityStream(...) User-provided value
... + ... getHeaderString(...) : String ... + ... $@ flows to log entry. getHeaderString(...) User-provided value
... + ... getCookies(...) : Map ... + ... $@ flows to log entry. getCookies(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... is : InputStream ... + ... $@ flows to log entry. is User-provided value
... + ... is : InputStream ... + ... $@ flows to log entry. is User-provided value
... + ... is : InputStream ... + ... $@ flows to log entry. is User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... getPathInfo(...) : String ... + ... $@ flows to log entry. getPathInfo(...) User-provided value
... + ... getUriInfo(...) : UriInfoImpl ... + ... $@ flows to log entry. getUriInfo(...) User-provided value
... + ... getPathInfo(...) : String ... + ... $@ flows to log entry. getPathInfo(...) User-provided value
... + ... getUriInfo(...) : UriInfoImpl ... + ... $@ flows to log entry. getUriInfo(...) User-provided value
message getRequestURL(...) : StringBuffer message $@ flows to log entry. getRequestURL(...) User-provided value
message getRequestURL(...) : StringBuffer message $@ flows to log entry. getRequestURL(...) User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
... + ... params : MultivaluedMap ... + ... $@ flows to log entry. params User-provided value
getFirst(...) params : MultivaluedMap getFirst(...) $@ flows to log entry. params User-provided value
new Object[] params : MultivaluedMap new Object[] $@ flows to log entry. params User-provided value
... + ... getCanonicalHostName(...) : String ... + ... $@ flows to log entry. getCanonicalHostName(...) User-provided value
... + ... getCanonicalHostName(...) : String ... + ... $@ flows to log entry. getCanonicalHostName(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getRequestURL(...) : StringBuffer ... + ... $@ flows to log entry. getRequestURL(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getRequestURL(...) : StringBuffer ... + ... $@ flows to log entry. getRequestURL(...) User-provided value
new Object[] getHeader(...) : String new Object[] $@ flows to log entry. getHeader(...) User-provided value
name getParameterNames(...) : Enumeration name $@ flows to log entry. getParameterNames(...) User-provided value
name getParameterNames(...) : Enumeration name $@ flows to log entry. getParameterNames(...) User-provided value
name getParameterNames(...) : Enumeration name $@ flows to log entry. getParameterNames(...) User-provided value
name getParameterNames(...) : Enumeration name $@ flows to log entry. getParameterNames(...) User-provided value
new Object[] getHeader(...) : String new Object[] $@ flows to log entry. getHeader(...) User-provided value
new Object[] getHeader(...) : String new Object[] $@ flows to log entry. getHeader(...) User-provided value
github-actions[bot] commented 2 years ago

odpi/egeria

- source sink - - -
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
toString(...) exchange(...) : ResponseEntity toString(...) $@ flows to log entry. exchange(...) User-provided value
toString(...) exchange(...) : ResponseEntity toString(...) $@ flows to log entry. exchange(...) User-provided value
toString(...) exchange(...) : ResponseEntity toString(...) $@ flows to log entry. exchange(...) User-provided value
toString(...) exchange(...) : ResponseEntity toString(...) $@ flows to log entry. exchange(...) User-provided value
getRESTCallReturnText(...) exchange(...) : ResponseEntity getRESTCallReturnText(...) $@ flows to log entry. exchange(...) User-provided value
getRESTCallReturnText(...) exchange(...) : ResponseEntity getRESTCallReturnText(...) $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
toString(...) exchange(...) : ResponseEntity toString(...) $@ flows to log entry. exchange(...) User-provided value
toString(...) exchange(...) : ResponseEntity toString(...) $@ flows to log entry. exchange(...) User-provided value
toString(...) exchange(...) : ResponseEntity toString(...) $@ flows to log entry. exchange(...) User-provided value
toString(...) exchange(...) : ResponseEntity toString(...) $@ flows to log entry. exchange(...) User-provided value
restResult exchange(...) : ResponseEntity restResult $@ flows to log entry. exchange(...) User-provided value
restResult exchange(...) : ResponseEntity restResult $@ flows to log entry. exchange(...) User-provided value
restResult exchange(...) : ResponseEntity restResult $@ flows to log entry. exchange(...) User-provided value
restResult exchange(...) : ResponseEntity restResult $@ flows to log entry. exchange(...) User-provided value
restResult exchange(...) : ResponseEntity restResult $@ flows to log entry. exchange(...) User-provided value
restResult exchange(...) : ResponseEntity restResult $@ flows to log entry. exchange(...) User-provided value
restResult exchange(...) : ResponseEntity restResult $@ flows to log entry. exchange(...) User-provided value
restResult exchange(...) : ResponseEntity restResult $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
errorMessage exchange(...) : ResponseEntity errorMessage $@ flows to log entry. exchange(...) User-provided value
errorMessage exchange(...) : ResponseEntity errorMessage $@ flows to log entry. exchange(...) User-provided value
caughtErrorClassName exchange(...) : ResponseEntity caughtErrorClassName $@ flows to log entry. exchange(...) User-provided value
caughtErrorClassName exchange(...) : ResponseEntity caughtErrorClassName $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
getParameter(...) getParameter(...) getParameter(...) $@ flows to log entry. getParameter(...) User-provided value
getParameter(...) getParameter(...) getParameter(...) $@ flows to log entry. getParameter(...) User-provided value
getParameter(...) getParameter(...) getParameter(...) $@ flows to log entry. getParameter(...) User-provided value
getParameter(...) getParameter(...) getParameter(...) $@ flows to log entry. getParameter(...) User-provided value
refererUrl getHeader(...) : String refererUrl $@ flows to log entry. getHeader(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
... + ... exchange(...) : ResponseEntity ... + ... $@ flows to log entry. exchange(...) User-provided value
github-actions[bot] commented 2 years ago

hapifhir/hapi-fhir

- source sink - - -
valueString getHeaders(...) : Enumeration valueString $@ flows to log entry. getHeaders(...) User-provided value
prefix getParameterMap(...) : Map prefix $@ flows to log entry. getParameterMap(...) User-provided value
body getContent(...) : InputStream body $@ flows to log entry. getContent(...) User-provided value
responseString getContent(...) : InputStream responseString $@ flows to log entry. getContent(...) User-provided value
responseString getContent(...) : InputStream responseString $@ flows to log entry. getContent(...) User-provided value
content getContent(...) : InputStream content $@ flows to log entry. getContent(...) User-provided value
new String(...) getContent(...) : InputStream new String(...) $@ flows to log entry. getContent(...) User-provided value
userAgent getHeader(...) : String userAgent $@ flows to log entry. getHeader(...) User-provided value
token getHeader(...) : String token $@ flows to log entry. getHeader(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
token getHeader(...) : String token $@ flows to log entry. getHeader(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
requestFullPath getRequestURI(...) : String requestFullPath $@ flows to log entry. getRequestURI(...) User-provided value
requestUrl getRequestURL(...) : StringBuffer requestUrl $@ flows to log entry. getRequestURL(...) User-provided value
requestId getHeader(...) : String requestId $@ flows to log entry. getHeader(...) User-provided value
nextQualifierValue getHeaders(...) : Enumeration nextQualifierValue $@ flows to log entry. getHeaders(...) User-provided value
...[...] getParameterMap(...) : Map ...[...] $@ flows to log entry. getParameterMap(...) User-provided value
new Object[] getParameterMap(...) : Map new Object[] $@ flows to log entry. getParameterMap(...) User-provided value
requestSource getHeader(...) : String requestSource $@ flows to log entry. getHeader(...) User-provided value
toString(...) getRequestURL(...) : StringBuffer toString(...) $@ flows to log entry. getRequestURL(...) User-provided value
toString(...) getHeaderNames(...) : Enumeration toString(...) $@ flows to log entry. getHeaderNames(...) User-provided value
toString(...) getHeaders(...) : Enumeration toString(...) $@ flows to log entry. getHeaders(...) User-provided value
responseBody postForEntity(...) : ResponseEntity responseBody $@ flows to log entry. postForEntity(...) User-provided value
thePagingAction getParameterMap(...) : Map thePagingAction $@ flows to log entry. getParameterMap(...) User-provided value
ifNoneMatch getHeader(...) : String ifNoneMatch $@ flows to log entry. getHeader(...) User-provided value
headerNames getHeaderNames(...) : Enumeration headerNames $@ flows to log entry. getHeaderNames(...) User-provided value
forwardedFor getHeaders(...) : Enumeration forwardedFor $@ flows to log entry. getHeaders(...) User-provided value
... + ... theRequest : ResourceRequest ... + ... $@ flows to log entry. theRequest User-provided value
resourceName theRequest : ResourceRequest resourceName $@ flows to log entry. theRequest User-provided value
github-actions[bot] commented 2 years ago

apache/myfaces-tobago

- source sink - - -
... + ... getRequestHeaderMap(...) : Map ... + ... $@ flows to log entry. getRequestHeaderMap(...) User-provided value
header getRequestHeaderMap(...) : Map header $@ flows to log entry. getRequestHeaderMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
sourceId getRequestParameterMap(...) : Map sourceId $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
sourceId getRequestParameterMap(...) : Map sourceId $@ flows to log entry. getRequestParameterMap(...) User-provided value
toConfidentialString(...) getRequestParameterMap(...) : Map toConfidentialString(...) $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterValuesMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterValuesMap(...) User-provided value
newValue getRequestParameterMap(...) : Map newValue $@ flows to log entry. getRequestParameterMap(...) User-provided value
newValue getRequestParameterMap(...) : Map newValue $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
selected getRequestParameterMap(...) : Map selected $@ flows to log entry. getRequestParameterMap(...) User-provided value
sourceId getRequestParameterMap(...) : Map sourceId $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
query getRequestParameterMap(...) : Map query $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
string getRequestParameterMap(...) : Map string $@ flows to log entry. getRequestParameterMap(...) User-provided value
string getRequestParameterMap(...) : Map string $@ flows to log entry. getRequestParameterMap(...) User-provided value
string getRequestParameterMap(...) : Map string $@ flows to log entry. getRequestParameterMap(...) User-provided value
token getRequestParameterMap(...) : Map token $@ flows to log entry. getRequestParameterMap(...) User-provided value
token getRequestParameterMap(...) : Map token $@ flows to log entry. getRequestParameterMap(...) User-provided value
token getRequestParameterMap(...) : Map token $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
... + ... getRequestHeaderMap(...) : Map ... + ... $@ flows to log entry. getRequestHeaderMap(...) User-provided value
... + ... getRequestParameterMap(...) : Map ... + ... $@ flows to log entry. getRequestParameterMap(...) User-provided value
github-actions[bot] commented 2 years ago

B3Partners/tailormap

- source sink - - -
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
... + ... getRemoteUser(...) : String ... + ... $@ flows to log entry. getRemoteUser(...) User-provided value
... + ... getRequestURI(...) : String ... + ... $@ flows to log entry. getRequestURI(...) User-provided value
... + ... getRemoteUser(...) : String ... + ... $@ flows to log entry. getRemoteUser(...) User-provided value
... + ... getParameter(...) : String ... + ... $@ flows to log entry. getParameter(...) User-provided value
... + ... getParameter(...) : String ... + ... $@ flows to log entry. getParameter(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getHeader(...) : String ... + ... $@ flows to log entry. getHeader(...) User-provided value
... + ... getRemoteUser(...) : String ... + ... $@ flows to log entry. getRemoteUser(...) User-provided value
... + ... getParameter(...) : String ... + ... $@ flows to log entry. getParameter(...) User-provided value
... + ... getParameter(...) : String ... + ... $@ flows to log entry. getParameter(...) User-provided value
... + ... getRequestURL(...) : StringBuffer ... + ... $@ flows to log entry. getRequestURL(...) User-provided value
... + ... getRequestURL(...) : StringBuffer ... + ... $@ flows to log entry. getRequestURL(...) User-provided value
github-actions[bot] commented 2 years ago

Yubico/java-webauthn-server

- source sink - - -
username username : String username $@ flows to log entry. username User-provided value
displayName displayName : String displayName $@ flows to log entry. displayName User-provided value
credentialNickname credentialNickname : String credentialNickname $@ flows to log entry. credentialNickname User-provided value
responseJson responseJson : String responseJson $@ flows to log entry. responseJson User-provided value
responseJson responseJson : String responseJson $@ flows to log entry. responseJson User-provided value
username username : String username $@ flows to log entry. username User-provided value
responseJson responseJson : String responseJson $@ flows to log entry. responseJson User-provided value
sessionTokenBase64 sessionTokenBase64 : String sessionTokenBase64 $@ flows to log entry. sessionTokenBase64 User-provided value
credentialIdBase64 credentialIdBase64 : String credentialIdBase64 $@ flows to log entry. credentialIdBase64 User-provided value
username username : String username $@ flows to log entry. username User-provided value
responseJson responseJson : String responseJson $@ flows to log entry. responseJson User-provided value
responseJson responseJson : String responseJson $@ flows to log entry. responseJson User-provided value
responseJson responseJson : String responseJson $@ flows to log entry. responseJson User-provided value
messages credentialIdBase64 : String messages $@ flows to log entry. credentialIdBase64 User-provided value
messages credentialIdBase64 : String messages $@ flows to log entry. credentialIdBase64 User-provided value
github-actions[bot] commented 2 years ago

apache/incubator-shenyu

- source sink - - -
clientIp getHeader(...) : String clientIp $@ flows to log entry. getHeader(...) User-provided value
clientIp getHeader(...) : String clientIp $@ flows to log entry. getHeader(...) User-provided value
metaDataDTO metaDataDTO : MetaDataDTO metaDataDTO $@ flows to log entry. metaDataDTO User-provided value
tokenValue getHeader(...) : String tokenValue $@ flows to log entry. getHeader(...) User-provided value
metaData metaData : MetaData metaData $@ flows to log entry. metaData User-provided value
metaData metaData : MetaData metaData $@ flows to log entry. metaData User-provided value
metaData metaData : MetaData metaData $@ flows to log entry. metaData User-provided value
metaData metaData : MetaData metaData $@ flows to log entry. metaData User-provided value
json exchange(...) : ResponseEntity json $@ flows to log entry. exchange(...) User-provided value
json postForEntity(...) : ResponseEntity json $@ flows to log entry. postForEntity(...) User-provided value
name name : String name $@ flows to log entry. name User-provided value
getName(...) pluginData : PluginData getName(...) $@ flows to log entry. pluginData User-provided value
name name : String name $@ flows to log entry. name User-provided value
github-actions[bot] commented 2 years ago

jnidzwetzki/bboxdb

- source sink - - -
getKey(...) getInputStream(...) : InputStream getKey(...) $@ flows to log entry. getInputStream(...) User-provided value
getKey(...) getInputStream(...) : InputStream getKey(...) $@ flows to log entry. getInputStream(...) User-provided value
getKey(...) getInputStream(...) : InputStream getKey(...) $@ flows to log entry. getInputStream(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
... + ... getInputStream(...) : InputStream ... + ... $@ flows to log entry. getInputStream(...) User-provided value
github-actions[bot] commented 2 years ago

oracle/weblogic-kubernetes-operator

- source sink - - -
params cluster : String params $@ flows to log entry. cluster User-provided value
params params : ScaleClusterParamsModel params $@ flows to log entry. params User-provided value
result getEntityStream(...) : InputStream result $@ flows to log entry. getEntityStream(...) User-provided value
msg getUriInfo(...) : UriInfo msg $@ flows to log entry. getUriInfo(...) User-provided value
msg getEntityStream(...) : InputStream msg $@ flows to log entry. getEntityStream(...) User-provided value
msg getUriInfo(...) : UriInfo msg $@ flows to log entry. getUriInfo(...) User-provided value
github-actions[bot] commented 2 years ago

NCI-Agency/anet

- source sink - - -
message user : Person message $@ flows to log entry. user User-provided value
message user : Person message $@ flows to log entry. user User-provided value
message user : Person message $@ flows to log entry. user User-provided value
message user : Person message $@ flows to log entry. user User-provided value
message user : Person message $@ flows to log entry. user User-provided value
github-actions[bot] commented 2 years ago

nextcloud/news-android

- source sink - - -
... + ... getIntent(...) : Intent ... + ... $@ flows to log entry. getIntent(...) User-provided value
... + ... intent : Intent ... + ... $@ flows to log entry. intent User-provided value