CodeQL library for JavaScript/TypeScript
codeql/javascript-all 2.6.14 (changelog, source)
Search

Predicate ShellCommandInjectionFromEnvironmentConfig::isSinkWithHighlight

Holds if sink is a command-injection sink with highlight as the corresponding alert location.

Import path

import semmle.javascript.security.dataflow.ShellCommandInjectionFromEnvironmentQuery
predicate isSinkWithHighlight(Node sink, Node highlight)