|
137 | 137 | | pg-promise.js:60:20:60:24 | query | pg-promise.js:7:16:7:34 | req.params.category | pg-promise.js:60:20:60:24 | query | This query string depends on a $@. | pg-promise.js:7:16:7:34 | req.params.category | user-provided value |
|
138 | 138 | | pg-promise.js:63:23:63:27 | query | pg-promise.js:7:16:7:34 | req.params.category | pg-promise.js:63:23:63:27 | query | This query string depends on a $@. | pg-promise.js:7:16:7:34 | req.params.category | user-provided value |
|
139 | 139 | | pg-promise.js:64:16:64:20 | query | pg-promise.js:7:16:7:34 | req.params.category | pg-promise.js:64:16:64:20 | query | This query string depends on a $@. | pg-promise.js:7:16:7:34 | req.params.category | user-provided value |
|
| 140 | +| rds-client.js:19:23:19:58 | new Exe ... arams1) | rds-client.js:8:23:8:30 | req.body | rds-client.js:19:23:19:58 | new Exe ... arams1) | This query string depends on a $@. | rds-client.js:8:23:8:30 | req.body | user-provided value | |
| 141 | +| rds-client.js:36:23:36:51 | new Exe ... params) | rds-client.js:8:23:8:30 | req.body | rds-client.js:36:23:36:51 | new Exe ... params) | This query string depends on a $@. | rds-client.js:8:23:8:30 | req.body | user-provided value | |
| 142 | +| rds-client.js:53:14:53:22 | userQuery | rds-client.js:44:23:44:30 | req.body | rds-client.js:53:14:53:22 | userQuery | This query string depends on a $@. | rds-client.js:44:23:44:30 | req.body | user-provided value | |
| 143 | +| rds-client.js:61:50:61:52 | sql | rds-client.js:45:25:45:32 | req.body | rds-client.js:61:50:61:52 | sql | This query string depends on a $@. | rds-client.js:45:25:45:32 | req.body | user-provided value | |
140 | 144 | | redis.js:10:16:10:27 | req.body.key | redis.js:10:16:10:23 | req.body | redis.js:10:16:10:27 | req.body.key | This query object depends on a $@. | redis.js:10:16:10:23 | req.body | user-provided value |
|
141 | 145 | | redis.js:18:16:18:18 | key | redis.js:12:15:12:22 | req.body | redis.js:18:16:18:18 | key | This query object depends on a $@. | redis.js:12:15:12:22 | req.body | user-provided value |
|
142 | 146 | | redis.js:19:43:19:45 | key | redis.js:12:15:12:22 | req.body | redis.js:19:43:19:45 | key | This query object depends on a $@. | redis.js:12:15:12:22 | req.body | user-provided value |
|
@@ -563,6 +567,23 @@ edges
|
563 | 567 | | pg-promise.js:22:11:22:15 | query | pg-promise.js:60:20:60:24 | query | provenance | |
|
564 | 568 | | pg-promise.js:22:11:22:15 | query | pg-promise.js:63:23:63:27 | query | provenance | |
|
565 | 569 | | pg-promise.js:22:11:22:15 | query | pg-promise.js:64:16:64:20 | query | provenance | |
|
| 570 | +| rds-client.js:8:11:8:36 | userQuery | rds-client.js:17:14:17:22 | userQuery | provenance | | |
| 571 | +| rds-client.js:8:11:8:36 | userQuery | rds-client.js:33:24:33:32 | userQuery | provenance | | |
| 572 | +| rds-client.js:8:23:8:30 | req.body | rds-client.js:8:11:8:36 | userQuery | provenance | | |
| 573 | +| rds-client.js:13:11:18:5 | params1 [sql] | rds-client.js:19:51:19:57 | params1 [sql] | provenance | | |
| 574 | +| rds-client.js:13:21:18:5 | {\\n ... y\\n } [sql] | rds-client.js:13:11:18:5 | params1 [sql] | provenance | | |
| 575 | +| rds-client.js:17:14:17:22 | userQuery | rds-client.js:13:21:18:5 | {\\n ... y\\n } [sql] | provenance | | |
| 576 | +| rds-client.js:19:51:19:57 | params1 [sql] | rds-client.js:19:23:19:58 | new Exe ... arams1) | provenance | | |
| 577 | +| rds-client.js:29:11:34:5 | params [sqlStatements] | rds-client.js:36:45:36:50 | params [sqlStatements] | provenance | | |
| 578 | +| rds-client.js:29:20:34:5 | {\\n ... y\\n } [sqlStatements] | rds-client.js:29:11:34:5 | params [sqlStatements] | provenance | | |
| 579 | +| rds-client.js:33:24:33:32 | userQuery | rds-client.js:29:20:34:5 | {\\n ... y\\n } [sqlStatements] | provenance | | |
| 580 | +| rds-client.js:36:45:36:50 | params [sqlStatements] | rds-client.js:36:23:36:51 | new Exe ... params) | provenance | | |
| 581 | +| rds-client.js:44:11:44:36 | userQuery | rds-client.js:53:14:53:22 | userQuery | provenance | | |
| 582 | +| rds-client.js:44:23:44:30 | req.body | rds-client.js:44:11:44:36 | userQuery | provenance | | |
| 583 | +| rds-client.js:45:11:45:40 | userQueries | rds-client.js:61:24:61:34 | userQueries | provenance | | |
| 584 | +| rds-client.js:45:25:45:32 | req.body | rds-client.js:45:11:45:40 | userQueries | provenance | | |
| 585 | +| rds-client.js:61:24:61:34 | userQueries | rds-client.js:61:40:61:42 | sql | provenance | | |
| 586 | +| rds-client.js:61:40:61:42 | sql | rds-client.js:61:50:61:52 | sql | provenance | | |
566 | 587 | | redis.js:10:16:10:23 | req.body | redis.js:10:16:10:27 | req.body.key | provenance | Config |
|
567 | 588 | | redis.js:12:9:12:26 | key | redis.js:13:16:13:18 | key | provenance | |
|
568 | 589 | | redis.js:12:9:12:26 | key | redis.js:18:16:18:18 | key | provenance | |
|
@@ -940,6 +961,26 @@ nodes
|
940 | 961 | | pg-promise.js:60:20:60:24 | query | semmle.label | query |
|
941 | 962 | | pg-promise.js:63:23:63:27 | query | semmle.label | query |
|
942 | 963 | | pg-promise.js:64:16:64:20 | query | semmle.label | query |
|
| 964 | +| rds-client.js:8:11:8:36 | userQuery | semmle.label | userQuery | |
| 965 | +| rds-client.js:8:23:8:30 | req.body | semmle.label | req.body | |
| 966 | +| rds-client.js:13:11:18:5 | params1 [sql] | semmle.label | params1 [sql] | |
| 967 | +| rds-client.js:13:21:18:5 | {\\n ... y\\n } [sql] | semmle.label | {\\n ... y\\n } [sql] | |
| 968 | +| rds-client.js:17:14:17:22 | userQuery | semmle.label | userQuery | |
| 969 | +| rds-client.js:19:23:19:58 | new Exe ... arams1) | semmle.label | new Exe ... arams1) | |
| 970 | +| rds-client.js:19:51:19:57 | params1 [sql] | semmle.label | params1 [sql] | |
| 971 | +| rds-client.js:29:11:34:5 | params [sqlStatements] | semmle.label | params [sqlStatements] | |
| 972 | +| rds-client.js:29:20:34:5 | {\\n ... y\\n } [sqlStatements] | semmle.label | {\\n ... y\\n } [sqlStatements] | |
| 973 | +| rds-client.js:33:24:33:32 | userQuery | semmle.label | userQuery | |
| 974 | +| rds-client.js:36:23:36:51 | new Exe ... params) | semmle.label | new Exe ... params) | |
| 975 | +| rds-client.js:36:45:36:50 | params [sqlStatements] | semmle.label | params [sqlStatements] | |
| 976 | +| rds-client.js:44:11:44:36 | userQuery | semmle.label | userQuery | |
| 977 | +| rds-client.js:44:23:44:30 | req.body | semmle.label | req.body | |
| 978 | +| rds-client.js:45:11:45:40 | userQueries | semmle.label | userQueries | |
| 979 | +| rds-client.js:45:25:45:32 | req.body | semmle.label | req.body | |
| 980 | +| rds-client.js:53:14:53:22 | userQuery | semmle.label | userQuery | |
| 981 | +| rds-client.js:61:24:61:34 | userQueries | semmle.label | userQueries | |
| 982 | +| rds-client.js:61:40:61:42 | sql | semmle.label | sql | |
| 983 | +| rds-client.js:61:50:61:52 | sql | semmle.label | sql | |
943 | 984 | | redis.js:10:16:10:23 | req.body | semmle.label | req.body |
|
944 | 985 | | redis.js:10:16:10:27 | req.body.key | semmle.label | req.body.key |
|
945 | 986 | | redis.js:12:9:12:26 | key | semmle.label | key |
|
|
0 commit comments