Skip to content

Conversation

michaelnebel
Copy link
Contributor

@michaelnebel michaelnebel commented Aug 25, 2025

If a collection of bytes and chars are returned by an API, we now consider the entire collection tainted instead of only the elements of the collection. According to DCA this generates more alerts for some of our existing queries and the results appear to be sound.

@hvitved : Should we consider merging this?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant