rspec/rules/S1523/java/rule.adoc

47 lines
1.1 KiB
Plaintext
Raw Normal View History

2020-06-30 12:47:33 +02:00
include::../description.adoc[]
include::../ask-yourself.adoc[]
include::../recommended.adoc[]
== Sensitive Code Example
----
public class Reflection {
public static void run(java.lang.ClassLoader loader, String className, String methodName, String fieldName,
Class<?> parameterTypes)
throws NoSuchMethodException, SecurityException, ClassNotFoundException, NoSuchFieldException {
Class<?> clazz = Class.forName(className); // Sensitive
clazz.getMethod(methodName, parameterTypes); // Sensitive
clazz.getMethods(); // Sensitive
clazz.getField(fieldName); // Sensitive
clazz.getFields(); // Sensitive
clazz.getDeclaredField(fieldName); // Sensitive
clazz.getDeclaredFields(); // Sensitive
clazz.getDeclaredClasses(); // Sensitive
loader.loadClass(className); // Sensitive
}
}
----
include::../see.adoc[]
ifdef::env-github,rspecator-view[]
'''
== Implementation Specification
(visible only on this page)
include::../message.adoc[]
'''
== Comments And Links
(visible only on this page)
include::../comments-and-links.adoc[]
endif::env-github,rspecator-view[]