github / github/codeql

Java: Callable.getAnException() reports thrown exceptions

Abierto
#5,464 1 comentario 0 reacciones 0 asignados Ver en GitHub
acknowledged Java not security
Lenguaje dominante
CodeQL
Estrellas
10.1k
Forks
2.1k
Merge medio
2 d 15 h
PR fusionados (30 d)
141

Descripción

[`Callable.getAnException()`](https://codeql.github.com/codeql-standard-libraries/java/semmle/code/java/Member.qll/predicate.Member$Callable$getAnException.0.html) is documented as:
> Gets an exception that occurs in the `throws` clause of this callable.

Note how it says `throws` clause, not `throw` statement. Yet it appears to be reporting exceptions which do not appear in the `throws` clause, but appear inside `throw` statements:
```ql
import java

from Method m, Exception e
where
m.fromSource()
and e = m.getAnException()
and not e.fromSource()
select m, e.toString()
```
[Query Console link](https://lgtm.com/query/5757069100542810787/)
The found `Exception` elements also seem to cause issues for the Query Console, see #5465.

(This also affects `Callable.getAThrownExceptionType()` which delegates to `getAnException()`.)

Guía de contribución

Abrir la guía de contribución

Evaluación

Este issue todavía no se ha evaluado.

Recibe los nuevos issues en tu correo

Un resumen breve de issues de GitHub para principiantes.