forked from DataDog/dd-trace-java
-
Notifications
You must be signed in to change notification settings - Fork 0
Commit 00358aa
Try to match tainted objects with sources when checking vulnerabilities with unbounded objects (DataDog#6122)
1 parent b1ae59a commit 00358aa
File tree
3 files changed
+87
-4
lines changed- dd-java-agent/agent-iast/src
- main/java/com/datadog/iast
- sink
- taint
- test/groovy/com/datadog/iast/sink
3 files changed
+87
-4
lines changedLines changed: 22 additions & 3 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
9 | 9 |
| |
10 | 10 |
| |
11 | 11 |
| |
12 | + | ||
12 | 13 |
| |
13 | 14 |
| |
14 | 15 |
| |
| |||
57 | 58 |
| |
58 | 59 |
| |
59 | 60 |
| |
60 | - | ||
61 | + | ||
61 | 62 |
| |
62 | 63 |
| |
63 | 64 |
| |
| |||
119 | 120 |
| |
120 | 121 |
| |
121 | 122 |
| |
122 | - | ||
123 | + | ||
123 | 124 |
| |
124 | 125 |
| |
125 | 126 |
| |
| |||
161 | 162 |
| |
162 | 163 |
| |
163 | 164 |
| |
164 | - | ||
165 | + | ||
165 | 166 |
| |
166 | 167 |
| |
167 | 168 |
| |
| |||
179 | 180 |
| |
180 | 181 |
| |
181 | 182 |
| |
183 | + | ||
184 | + | ||
185 | + | ||
186 | + | ||
187 | + | ||
188 | + | ||
189 | + | ||
190 | + | ||
191 | + | ||
192 | + | ||
193 | + | ||
194 | + | ||
195 | + | ||
196 | + | ||
197 | + | ||
198 | + | ||
199 | + | ||
200 | + | ||
182 | 201 |
| |
183 | 202 |
| |
184 | 203 |
| |
|
Lines changed: 9 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
59 | 59 |
| |
60 | 60 |
| |
61 | 61 |
| |
62 | + | ||
63 | + | ||
64 | + | ||
65 | + | ||
66 | + | ||
67 | + | ||
68 | + | ||
69 | + | ||
70 | + | ||
62 | 71 |
| |
63 | 72 |
| |
64 | 73 |
| |
|
Lines changed: 56 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 | 1 |
| |
2 | 2 |
| |
3 | 3 |
| |
4 | + | ||
5 | + | ||
6 | + | ||
7 | + | ||
8 | + | ||
9 | + | ||
10 | + | ||
11 | + | ||
4 | 12 |
| |
5 | - | ||
13 | + | ||
14 | + | ||
15 | + | ||
16 | + | ||
6 | 17 |
| |
7 | 18 |
| |
8 | 19 |
| |
9 | 20 |
| |
10 | 21 |
| |
22 | + | ||
23 | + | ||
24 | + | ||
25 | + | ||
26 | + | ||
27 | + | ||
28 | + | ||
29 | + | ||
30 | + | ||
31 | + | ||
32 | + | ||
33 | + | ||
34 | + | ||
11 | 35 |
| |
12 | 36 |
| |
13 | 37 |
| |
| |||
43 | 67 |
| |
44 | 68 |
| |
45 | 69 |
| |
70 | + | ||
71 | + | ||
72 | + | ||
73 | + | ||
74 | + | ||
75 | + | ||
76 | + | ||
77 | + | ||
78 | + | ||
79 | + | ||
80 | + | ||
81 | + | ||
82 | + | ||
83 | + | ||
84 | + | ||
85 | + | ||
86 | + | ||
87 | + | ||
88 | + | ||
89 | + | ||
90 | + | ||
91 | + | ||
92 | + | ||
93 | + | ||
94 | + | ||
95 | + | ||
96 | + | ||
97 | + | ||
98 | + | ||
99 | + | ||
100 | + | ||
46 | 101 |
| |
47 | 102 |
| |
48 | 103 |
| |
|
0 commit comments