Skip to content

Python: Implement ContentApprox#21941

Draft
hvitved wants to merge 27 commits into
github:mainfrom
hvitved:python/content-approx
Draft

Python: Implement ContentApprox#21941
hvitved wants to merge 27 commits into
github:mainfrom
hvitved:python/content-approx

Conversation

@hvitved
Copy link
Copy Markdown
Contributor

@hvitved hvitved commented Jun 4, 2026

No description provided.

yoff and others added 27 commits May 21, 2026 16:57
- remove `tupleStoreStep` and `dictStoreStep` from `containerStep`
   These are imprecise compared to the content being precise.
- add implicit reads to recover taint at sinks
- add implicit read steps for decoders
  to supplement the `AdditionalTaintStep`
  that now only covers when the full container is tainted.
We now find an alert on this line as we hope to
It is not an alert for _full_ SSRF, though, since that configuration cannot handle multiple substitutions.
and adjust collection test
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants