Skip to content

Commit b7590a6

Browse files
committed
Improve error message
1 parent d3810c4 commit b7590a6

File tree

2 files changed

+3
-4
lines changed

2 files changed

+3
-4
lines changed

javascript/frameworks/cap/src/sensitive-exposure/SensitiveExposure.ql

Lines changed: 2 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -59,7 +59,6 @@ class SensitiveLogExposureConfig extends TaintTracking::Configuration {
5959

6060
from SensitiveLogExposureConfig config, DataFlow::PathNode source, DataFlow::PathNode sink
6161
where config.hasFlowPath(source, sink)
62-
select sink, source, sink, "Log entry depends on the $@.",
62+
select sink, source, sink, "Log entry depends on the potentially sensitive field `$@`.",
6363
source.getNode().(SensitiveExposureFieldSource).getCdsField(),
64-
"potentially sensitive field `" +
65-
source.getNode().(SensitiveExposureFieldSource).getCdsField().getName() + "`"
64+
source.getNode().(SensitiveExposureFieldSource).getCdsField().getName()

javascript/frameworks/cap/test/queries/sensitive-exposure/sensitive-exposure.expected

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -5,4 +5,4 @@ nodes
55
edges
66
| sensitive-exposure.js:9:32:9:42 | Sample.name | sensitive-exposure.js:9:32:9:42 | Sample.name |
77
#select
8-
| sensitive-exposure.js:9:32:9:42 | Sample.name | sensitive-exposure.js:9:32:9:42 | Sample.name | sensitive-exposure.js:9:32:9:42 | Sample.name | Log entry depends on the $@. | sensitive-exposure.cds:4:5:5:1 | {\\n ... } | potentially sensitive field `name` |
8+
| sensitive-exposure.js:9:32:9:42 | Sample.name | sensitive-exposure.js:9:32:9:42 | Sample.name | sensitive-exposure.js:9:32:9:42 | Sample.name | Log entry depends on the potentially sensitive field `$@`. | sensitive-exposure.cds:4:5:5:1 | {\\n ... } | name |

0 commit comments

Comments
 (0)