Class: Scanny::Checks::Sql::StringInterpolationWithParamsCheck

Inherits:
SqlCheck
  • Object
show all
Defined in:
lib/scanny/checks/sql_injection/string_interpolation_with_params_check.rb

Overview

Checks for use of dynamic strings in when creating an SQL query

Instance Method Summary collapse

Methods inherited from Check

#compiled_pattern, #issue, #strict?, #visit

Instance Method Details

#check(node) ⇒ Object



12
13
14
# File 'lib/scanny/checks/sql_injection/string_interpolation_with_params_check.rb', line 12

def check(node)
  issue :high, warning_message, :cwe => 89
end

#patternObject



8
9
10
# File 'lib/scanny/checks/sql_injection/string_interpolation_with_params_check.rb', line 8

def pattern
  pattern_params_in_select
end