CWE(s) in Kotlin not being detected by java-kotlin queries? #19517
Labels
question
Further information is requested
Content-Length: 228942 | pFad | http://github.com/github/codeql/issues/19517
C5Fetched URL: http://github.com/github/codeql/issues/19517
Alternative Proxies:
Hi!
I recently did a test with CodeQL on a new Kotlin project, and I included CWE-1204 to get a detection.
I copied the example from documentation and test case. I then used IntelliJ IDEA to convert it from Java to Kotlin.
I got no detections, and assumed it was an issue with Actions setup, after debugging I decided to test out CWE-117 which I've heard works on Kotlin. After I ran the CI/CD setup it was detected.
I was recommended to try out example from CWE-1204 using a new Java project. After running the CI/CD setup, it was detected.
I spent some time trying to figure out why, decompiling the code, looking at logs. I then looked at sarif file, and I found following rule:
Questions:
The text was updated successfully, but these errors were encountered: