Expand description
Path-sensitive taint analysis
This module analyzes taint flow separately for each execution path through a function’s CFG. This enables detecting vulnerabilities where only some branches lack sanitization.
Structs§
- Path
Analysis Result - Result of analyzing a single path
- Path
Sensitive Result - Result of path-sensitive analysis
- Path
Sensitive Taint Analysis - Path-sensitive taint analysis
- Sanitizer
Call - Sink
Call - Source
Call
Enums§
- Taint
State - Taint state for a variable