Skip to content

How to sanitize log injection in codeql for java? #12641

Answered by atorralba
PuspitaGhosh asked this question in Q&A
Discussion options

You must be logged in to vote

Hi @PuspitaGhosh,

Your sanitization is correct. Please see #10702, where this was also reported. We agreed to improve the query to properly recognize the sanitizers, and did it in the PR #10707. Once that PR is merged, your alerts should disappear.

Apologies for the confusion!

Replies: 2 comments

Comment options

You must be logged in to vote
0 replies
Answer selected by PuspitaGhosh
Comment options

You must be logged in to vote
0 replies
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
3 participants