We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
1 parent 72178f0 commit 1ff04d9Copy full SHA for 1ff04d9
1 file changed
powershell/ql/test/query-tests/security/cwe-089/test.ps1
@@ -67,4 +67,15 @@ $QueryConn = @{
67
Query = ""
68
}
69
70
-Invoke-Sqlcmd @QueryConn # GOOD
+Invoke-Sqlcmd @QueryConn # GOOD
71
+
72
+$QueryConn2 = @{
73
+ Database = "MyDB"
74
+ ServerInstance = "MyServer"
75
+ Username = "MyUserName"
76
+ Password = "MyPassword"
77
+ ConnectionTimeout = 0
78
+ Query = $userinput
79
+}
80
81
+Invoke-Sqlcmd @QueryConn2 # BAD [NOT DETECTED]
0 commit comments