Using QL to find a remote code execution vulnerability in Apache Struts
1–2 of 2 posts
Re: Using QL to find a remote code execution vulnerability in Apache Struts
#2Reading about CVE-2017-9805 it was really interesting to learn that the company that discovered it was using a Datalog-like language in order to query Java code for vulnerability patterns.