From 287ffdccc1dd7ed017d844a4fad069fd3340fa94 Mon Sep 17 00:00:00 2001 From: gbprod Date: Fri, 28 Oct 2022 14:22:16 +0200 Subject: Add regex injections for php (#3592) --- queries/php/injections.scm | 8 +++++++- 1 file changed, 7 insertions(+), 1 deletion(-) (limited to 'queries/php') diff --git a/queries/php/injections.scm b/queries/php/injections.scm index 603aa8b01..ee29c4851 100644 --- a/queries/php/injections.scm +++ b/queries/php/injections.scm @@ -2,6 +2,13 @@ (comment) @phpdoc +;; regex + +((function_call_expression + function: (_) @_preg_func_identifier + arguments: (arguments . (argument (_ (string_value) @regex)))) + (#lua-match? @_preg_func_identifier "^preg_")) + ;; bash ((function_call_expression @@ -11,4 +18,3 @@ "escapeshellcmd" "exec" "passthru" "proc_open" "shell_exec" "system")) ((expression_statement (shell_command_expression (string_value) @bash))) - -- cgit v1.2.3-70-g09d2