parts as $part) { if ($part instanceof PhpParser\Node\Scalar\EncapsedStringPart && $part->value ) { $non_empty = true; } if (ExpressionAnalyzer::analyze($statements_analyzer, $part, $context) === false) { return false; } $part_type = $statements_analyzer->node_data->getType($part); if ($part_type !== null) { $casted_part_type = CastAnalyzer::castStringAttempt( $statements_analyzer, $context, $part_type, $part ); if (!$casted_part_type->allLiterals()) { $all_literals = false; } if ($literal_string !== null) { if ($casted_part_type->isSingleLiteral()) { $literal_string .= $casted_part_type->getSingleLiteral(); } else { $literal_string = null; } } if ($statements_analyzer->data_flow_graph && !in_array('TaintedInput', $statements_analyzer->getSuppressedIssues()) ) { $var_location = new CodeLocation($statements_analyzer, $part); $new_parent_node = DataFlowNode::getForAssignment('concat', $var_location); $statements_analyzer->data_flow_graph->addNode($new_parent_node); $stmt_type->parent_nodes[$new_parent_node->id] = $new_parent_node; $codebase = $statements_analyzer->getCodebase(); $event = new AddRemoveTaintsEvent($stmt, $context, $statements_analyzer, $codebase); $added_taints = $codebase->config->eventDispatcher->dispatchAddTaints($event); $removed_taints = $codebase->config->eventDispatcher->dispatchRemoveTaints($event); if ($casted_part_type->parent_nodes) { foreach ($casted_part_type->parent_nodes as $parent_node) { $statements_analyzer->data_flow_graph->addPath( $parent_node, $new_parent_node, 'concat', $added_taints, $removed_taints ); } } } } elseif ($part instanceof EncapsedStringPart) { if ($literal_string !== null) { $literal_string .= $part->value; } } else { $all_literals = false; $literal_string = null; } } if ($non_empty) { if ($literal_string !== null) { $new_type = Type::getString($literal_string); } elseif ($all_literals) { $new_type = new Union([new TNonEmptyNonspecificLiteralString()]); } else { $new_type = new Union([new TNonEmptyString()]); } $new_type->parent_nodes = $stmt_type->parent_nodes; $stmt_type = $new_type; } $statements_analyzer->node_data->setType($stmt, $stmt_type); return true; } }