|
1 | 1 | extensions:
|
| 2 | + - addsTo: |
| 3 | + pack: codeql/javascript-all |
| 4 | + extensible: typeModel |
| 5 | + data: |
| 6 | + - ["aws-sdk.Athena", "aws-sdk", "Member[Athena]"] |
| 7 | + - ["aws-sdk.S3", "aws-sdk", "Member[S3]"] |
| 8 | + - ["aws-sdk.RDSDataService", "aws-sdk", "Member[RDSDataService]"] |
| 9 | + - ["aws-sdk.DynamoDB", "aws-sdk", "Member[DynamoDB]"] |
| 10 | + - ["@aws-sdk/client.Client", "@aws-sdk/client-athena", "Member[AthenaClient]"] |
| 11 | + - ["@aws-sdk/client.Client", "@aws-sdk/client-s3", "Member[S3Client]"] |
| 12 | + - ["@aws-sdk/client.Client", "@aws-sdk/client-dynamodb", "Member[DynamoDBClient,DynamoDB]"] |
| 13 | + - ["@aws-sdk/client.Client", "@aws-sdk/client-rds-data", "Member[RDSDataClient]"] |
2 | 14 | - addsTo:
|
3 | 15 | pack: codeql/javascript-all
|
4 | 16 | extensible: sinkModel
|
5 | 17 | data:
|
6 |
| - - ["aws-sdk", "AnyMember.Argument[0].Member[secretAccessKey,accessKeyId]", "credentials-key"] |
7 |
| - - ["aws-sdk", "AnyMember.Member[secretAccessKey,accessKeyId]", "credentials-key"] |
8 |
| - - ["aws-sdk", "Member[Credentials].Argument[0,1]", "credentials-key"] |
| 18 | + - ["aws-sdk", "AnyMember.Argument[0].Member[secretAccessKey,accessKeyId]", "credentials-key"] |
| 19 | + - ["aws-sdk", "AnyMember.Member[secretAccessKey,accessKeyId]", "credentials-key"] |
| 20 | + - ["aws-sdk", "Member[Credentials].Argument[0,1]", "credentials-key"] |
| 21 | + - ["@aws-sdk/client.Client", "ReturnValue.Member[send].Argument[0]", "sql-injection"] |
| 22 | + - ["aws-sdk.Athena", "ReturnValue.Member[startQueryExecution,createNamedQuery,updateNamedQuery].Argument[0].Member[QueryString]", "sql-injection"] |
| 23 | + - ["aws-sdk.S3", "ReturnValue.Member[selectObjectContent].Argument[0].Member[Expression]", "sql-injection"] |
| 24 | + - ["aws-sdk.RDSDataService", "ReturnValue.Member[executeStatement,batchExecuteStatement].Argument[0].Member[sql]", "sql-injection"] |
| 25 | + - ["aws-sdk.RDSDataService", "ReturnValue.Member[batchExecuteStatement].Argument[0].Member[parameterSets].ArrayElement.Member[sql]", "sql-injection"] |
| 26 | + - ["aws-sdk.DynamoDB", "ReturnValue.Member[executeStatement].Argument[0].Member[Statement]", "sql-injection"] |
| 27 | + - ["aws-sdk.DynamoDB", "ReturnValue.Member[batchExecuteStatement].Argument[0].Member[Statements].ArrayElement.Member[Statement]", "sql-injection"] |
| 28 | + - addsTo: |
| 29 | + pack: codeql/javascript-all |
| 30 | + extensible: summaryModel |
| 31 | + data: |
| 32 | + - ["@aws-sdk/client-athena", "Member[StartQueryExecutionCommand,CreateNamedQueryCommand,UpdateNamedQueryCommand]", "Argument[0].Member[QueryString]", "ReturnValue", "taint"] |
| 33 | + - ["@aws-sdk/client-athena", "Member[CreatePreparedStatementCommand]", "Argument[0].Member[QueryStatement]", "ReturnValue", "taint"] |
| 34 | + - ["@aws-sdk/client-s3", "Member[SelectObjectContentCommand]", "Argument[0].Member[Expression]", "ReturnValue", "taint"] |
| 35 | + - ["@aws-sdk/client-rds-data", "Member[ExecuteStatementCommand,BatchExecuteStatementCommand]", "Argument[0].Member[sql]", "ReturnValue", "taint"] |
| 36 | + - ["@aws-sdk/client-rds-data", "Member[BatchExecuteStatementCommand]", "Argument[0].Member[parameterSets].ArrayElement.Member[sql]", "ReturnValue", "taint"] |
| 37 | + - ["@aws-sdk/client-rds-data", "Member[ExecuteSqlCommand]", "Argument[0].Member[sqlStatements]", "ReturnValue", "taint"] |
| 38 | + - ["@aws-sdk/client-dynamodb", "Member[ExecuteStatementCommand]", "Argument[0].Member[Statement]", "ReturnValue", "taint"] |
| 39 | + - ["@aws-sdk/client-dynamodb", "Member[BatchExecuteStatementCommand]", "Argument[0].Member[Statements].ArrayElement.Member[Statement]", "ReturnValue", "taint"] |
| 40 | + - addsTo: |
| 41 | + pack: codeql/javascript-all |
| 42 | + extensible: sourceModel |
| 43 | + data: |
| 44 | + - ["@aws-sdk/client.Client", "ReturnValue.Member[send].ReturnValue.Awaited", "database-access-result"] |
| 45 | + - ["aws-sdk.Athena", "ReturnValue.Member[getQueryResults].ReturnValue.Member[promise].ReturnValue.Awaited", "database-access-result"] |
| 46 | + - ["aws-sdk.Athena", "ReturnValue.Member[getQueryResults].Argument[1].Parameter[1]", "database-access-result"] |
| 47 | + - ["aws-sdk.S3", "ReturnValue.Member[getObject].ReturnValue.Member[promise].ReturnValue.Awaited", "database-access-result"] |
| 48 | + - ["aws-sdk.S3", "ReturnValue.Member[getObject].Argument[1].Parameter[1]", "database-access-result"] |
| 49 | + - ["aws-sdk.RDSDataService", "ReturnValue.Member[executeStatement,batchExecuteStatement].ReturnValue.Member[promise].ReturnValue.Awaited", "database-access-result"] |
| 50 | + - ["aws-sdk.RDSDataService", "ReturnValue.Member[executeStatement,batchExecuteStatement].Argument[1].Parameter[1]", "database-access-result"] |
| 51 | + - ["aws-sdk.DynamoDB", "ReturnValue.Member[executeStatement,batchExecuteStatement,query,scan,getItem,batchGetItem].ReturnValue.Member[promise].ReturnValue.Awaited", "database-access-result"] |
| 52 | + - ["aws-sdk.DynamoDB", "ReturnValue.Member[executeStatement,batchExecuteStatement,query,scan,getItem,batchGetItem].Argument[1].Parameter[1]", "database-access-result"] |
0 commit comments