Module XmlBomb

Provides a taint tracking configuration for reasoning about XML-bomb vulnerabilities.

Import path

semmle.javascript.security.dataflow.XmlBomb

Imports

DOM

Provides predicates for reasoning about DOM types.

javascript

Provides classes for working with JavaScript programs, as well as JSON, YAML and HTML.

Modules

Aliases

XmlBomTrackingConfig

DEPRECATED: Use XmlBomb::Configuration instead.

XmlBombSanitizer

DEPRECATED: Use XmlBomb::Sanitizer instead.

XmlBombSink

DEPRECATED: Use XmlBomb::Sink instead.

XmlBombSource

DEPRECATED: Use XmlBomb::Source instead.