Class: Scanny::Checks::Sql::StringInterpolationWithParamsCheck
- Defined in:
- lib/scanny/checks/sql_injection/string_interpolation_with_params_check.rb
Overview
Checks for use of dynamic strings in when creating an SQL query
Instance Method Summary collapse
Methods inherited from Check
#compiled_pattern, #issue, #strict?, #visit
Instance Method Details
#check(node) ⇒ Object
12 13 14 |
# File 'lib/scanny/checks/sql_injection/string_interpolation_with_params_check.rb', line 12 def check(node) issue :high, , :cwe => 89 end |
#pattern ⇒ Object
8 9 10 |
# File 'lib/scanny/checks/sql_injection/string_interpolation_with_params_check.rb', line 8 def pattern pattern_params_in_select end |