class
Analyzer::Php::Drupal
Overview
Drupal 8+ attack-surface extractor.
Drupal declares its routes in MODULE.routing.yml files built on
top of the Symfony routing component. Each top-level key is a route
name whose value carries a path, an optional methods list, and a
defaults/requirements block:
example.content:
path: '/example/{id}'
defaults:
_controller: '\Drupal\example\Controller\ExampleController::view'
methods: [GET]
requirements:
_permission: 'access content'
We parse only *.routing.yml files — a Drupal tree carries many
other YAML files (*.info.yml, *.services.yml, *.libraries.yml,
*.schema.yml) that must never be treated as routes.
Defined in:
analyzer/analyzers/php/drupal.cr
Instance Method Summary
analyze
analyze ,
analyze_file(path : String) : Array(Endpoint)
analyze_file
test_path?(path : String) : Bool
test_path?
Instance methods inherited from class Analyzer
analyze
analyze ,
base_path : String
base_path ,
base_paths : Array(String)
base_paths ,
callees_needed? : Bool
callees_needed? ,
http_header_name(name : String) : String | Nil
http_header_name ,
line_number_for_index(content : String, char_index : Int32) : Int32
line_number_for_index ,
logger : NoirLogger
logger ,
parallel_analyze(files : Array(String), &block : String -> Nil)
parallel_analyze ,
read_file_content(path : String) : String
read_file_content ,
result : Array(Endpoint)
result ,
unique_params(params : Array(Param)) : Array(Param)
unique_params ,
url : String
url ,
web_root_path(path : String, markers : Array(String)) : String
web_root_path
Constructor methods inherited from class Analyzer
new(options : Hash(String, YAML::Any))
new
Instance methods inherited from module FileHelper
all_files : Array(String)
all_files ,
get_files_by_extension(extension : String) : Array(String)
get_files_by_extension ,
get_files_by_extensions(extensions : Array(String)) : Array(String)
get_files_by_extensions ,
get_files_by_prefix(prefix : String) : Array(String)
get_files_by_prefix ,
get_files_by_prefix_and_extension(prefix : String, extension : String) : Array(String)
get_files_by_prefix_and_extension ,
get_public_dir_files(base_path : String, folder : String) : Array(String)
get_public_dir_files ,
get_public_files(base_path : String, anchors : Array(String) = ["shard.yml" , "Gemfile" ]) : Array(String)
get_public_files
Instance Method Detail