amammad
|
32f5667bb6
|
revert YAML.qll and yaml sinks to previous PR, make a separate experimental query only for yaml
|
2024-02-26 12:12:03 +00:00 |
|
amammad
|
9c5c8c8362
|
fix test file
|
2024-02-26 12:05:35 +00:00 |
|
amammad
|
464e2e4291
|
fix qldoc and test files
|
2024-02-26 12:04:52 +00:00 |
|
Peter Stöckli
|
09cf76a880
|
Ruby: additional unsafe deserialization sinks for ox, oj
|
2023-10-19 14:04:48 +02:00 |
|
erik-krogh
|
1a27441cfb
|
drive-by: delete code-execution sinks from unsafe-deserialization, we risked duplicate alerts
|
2023-01-06 09:04:36 +01:00 |
|
erik-krogh
|
0e6028a7f3
|
add stdin as source for unsafe-deserialization
|
2023-01-06 09:04:36 +01:00 |
|
Alex Ford
|
3d08a2954d
|
Ruby: add rb/unsafe-deserialization sinks for const_get args
|
2022-10-11 15:45:51 +01:00 |
|
Alex Ford
|
a3f096a6bc
|
Ruby: rb/unsafe-deserialization test realignment
|
2022-10-11 15:44:00 +01:00 |
|
Alex Ford
|
b018706afd
|
Ruby: update rb/unsafe-deserialization tests
|
2022-09-26 11:28:24 +01:00 |
|
Alex Ford
|
364bc883ba
|
Ruby: add YAML.load_file as an unsafe deserialization sink
|
2022-09-23 15:54:15 +01:00 |
|
Nick Rolfe
|
2edbc16829
|
Ruby: add Hash.from_trusted_xml as an unsafe deserialization sink
|
2022-09-21 13:01:21 +01:00 |
|
Arthur Baars
|
976daddd36
|
Move files to ruby subfolder
|
2021-10-15 11:47:28 +02:00 |
|