codeql/java/old-change-notes/2020-12-09-xxe-fp-fix.md

199 B

lgtm,codescanning

  • The query "Resolving XML external entity in user-controlled data" (java/xxe) has been improved to report fewer false positives when a SAXParserFactory is configured safely.