Skip to content

Python: False positive: Tuple Destructuring #17008

Open
@JLLeitschuh

Description

@JLLeitschuh

Description of the false positive

CodeQL incorrectly identifies dataflow occurring from a constant value when a tuple is being destructured.

Code samples or links to source code
Screenshot 2024-07-17 at 1 17 28 PM

Here's it's very clear that status will always be 200 on this data flow path, but CodeQL incorrectly believes there is dataflow from the res.json() to the status variable.

https://github.com/Chainguard-Wolfi-Bites-Back/istio__istio/security/code-scanning/5

Metadata

Metadata

Assignees

No one assigned

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions