amammad
|
e45268cd4d
|
improve and fix bugs and add Form Flow Sources test files
|
2023-10-06 21:01:42 +02:00 |
|
erik-krogh
|
951ed01d6b
|
combine the library-tests/CallGraphs/FullTest tests into one file
|
2023-10-06 20:57:09 +02:00 |
|
Maiky
|
ed066281b9
|
Add documentation string for CorsPermissiveConfiguration
|
2023-10-06 18:22:31 +02:00 |
|
amammad
|
5bc21a6178
|
delete old tests
|
2023-10-06 16:09:05 +02:00 |
|
amammad
|
7d961e1af2
|
do review improvements
|
2023-10-06 16:07:10 +02:00 |
|
amammad
|
eef8137166
|
add Dice package, add global taint steps by SharedTaintStep, use getASuccessor
|
2023-10-06 10:58:26 +02:00 |
|
amammad
|
faaddd4dfe
|
updates for FormParsers and ReadableStream modules, add separate module for Readable Streams, BusBoy RemoteFlowSources is covering more sources now!, modularize
|
2023-10-05 21:46:58 +02:00 |
|
Asger F
|
97b3ebe385
|
Merge pull request #14380 from asgerf/js/amd-range
JS: Add AmdModuleDefinition::Range
|
2023-10-05 21:05:28 +02:00 |
|
Cornelius Riemenschneider
|
96edc1d349
|
Add skeleton bazel files for accessing the dbschemes.
|
2023-10-05 09:00:38 +02:00 |
|
Asger F
|
315272839d
|
JS: Change note
|
2023-10-05 08:13:43 +02:00 |
|
Asger F
|
162c477236
|
JS: Add AmdModuleDefinition::Range
|
2023-10-04 20:38:37 +02:00 |
|
github-actions[bot]
|
9fe993bec3
|
Release preparation for version 2.15.0
|
2023-10-04 14:15:27 +00:00 |
|
Henry Mercer
|
da92da2204
|
Bump minor versions of packs we regularly release
|
2023-10-03 16:31:23 +01:00 |
|
Henry Mercer
|
f3847b3f51
|
Merge branch 'main' into henrymercer/rc-3.11-mergeback
|
2023-10-03 16:30:23 +01:00 |
|
Maiky
|
816eebbb51
|
Add .qhelp and apply some review changes
|
2023-10-02 18:05:39 +02:00 |
|
amammad
|
e81a4fc330
|
remove CLI sources Library file and local sources for lower FPs
|
2023-10-01 05:44:13 +10:00 |
|
Maiky
|
142ab01b48
|
Remove comment line
|
2023-09-29 18:32:12 +02:00 |
|
Maiky
|
e171123589
|
Add initial query for CWE-942
|
2023-09-29 18:25:58 +02:00 |
|
amammad
|
97c27ac11b
|
revert SqlInjection.ql changes
|
2023-09-29 01:36:00 +10:00 |
|
amammad
|
58f4cd77dc
|
add TypeORM to javascript.qll file
add tests
improvement on comments
|
2023-09-29 01:23:22 +10:00 |
|
amammad
|
f41bc1f631
|
revert nodeJSLib
|
2023-09-28 20:37:21 +10:00 |
|
amammad
|
921198ed30
|
add separate query for sinks that accepts data: URL
|
2023-09-28 20:33:38 +10:00 |
|
Anders Schack-Mulligen
|
855c89667d
|
JavaScript: Use shared FileSystem library.
|
2023-09-28 08:58:55 +02:00 |
|
amammad
|
f6737b3d90
|
fix FP
|
2023-09-25 21:09:19 +10:00 |
|
amammad
|
0eb0c238f3
|
stash
|
2023-09-23 20:28:34 +10:00 |
|
amammad
|
bafe357500
|
V3
|
2023-09-23 18:22:43 +10:00 |
|
amammad
|
0c40223192
|
v1
|
2023-09-23 18:17:49 +10:00 |
|
amammad
|
a8aeb1d03e
|
add active record and data mapper patterns support
|
2023-09-22 22:50:55 +10:00 |
|
amammad
|
2c74dc23c9
|
add second order command execution sinks to tests
|
2023-09-22 20:00:36 +10:00 |
|
amammad
|
344869f0d7
|
change commandExecution sink to CodeInjection sink
|
2023-09-22 19:37:17 +10:00 |
|
amammad
|
a20ca78599
|
V1
|
2023-09-22 19:23:34 +10:00 |
|
amammad
|
f1a7f0a7e8
|
V1
|
2023-09-22 19:21:41 +10:00 |
|
amammad
|
06114d91d8
|
V1
|
2023-09-22 19:19:52 +10:00 |
|
amammad
|
522a2e2594
|
v2
|
2023-09-22 18:56:47 +10:00 |
|
github-actions[bot]
|
3acf5244b0
|
Post-release preparation for codeql-cli-2.14.6
|
2023-09-20 10:25:10 +00:00 |
|
github-actions[bot]
|
0a3670727f
|
Release preparation for version 2.14.6
|
2023-09-19 11:40:30 +00:00 |
|
Erik Krogh Kristensen
|
7e7852eff6
|
Merge pull request #13641 from erik-krogh/multi-char
JS/RB: write qhelp for `incomplete-multi-character-sanitization`
|
2023-09-14 14:48:30 +02:00 |
|
erik-krogh
|
c6b8c444d0
|
fix out of bounds string access in isUsingDecl
|
2023-09-13 21:53:49 +02:00 |
|
erik-krogh
|
fdd349c1a3
|
fix out of bounds string access in isUsingDecl
|
2023-09-13 20:11:21 +02:00 |
|
Max Schaefer
|
e722e3288f
|
Merge pull request #13771 from github/max-schaefer/server-side-url-redirect-help
JavaScript: Improve query help for `js/server-side-unvalidated-url-redirection`.
|
2023-09-13 13:20:48 +01:00 |
|
amammad
|
54a44777b7
|
v1
|
2023-09-13 19:14:15 +10:00 |
|
Max Schaefer
|
a9e81672f0
|
Make suggestion to replace example.com more explicit.
|
2023-09-12 16:54:05 +01:00 |
|
Max Schaefer
|
7ddb7da65e
|
Apply suggestions from code review
Co-authored-by: Felicity Chapman <felicitymay@github.com>
|
2023-09-12 16:47:23 +01:00 |
|
github-actions[bot]
|
d699880c86
|
Post-release preparation for codeql-cli-2.14.4
|
2023-09-08 21:17:52 +00:00 |
|
Chuan-kai Lin
|
1a575ef297
|
Merge pull request #14167 from asgerf/ts/tolerate-out-of-order-requests
JS: tolerate out of order requests in TypeScript extractor
|
2023-09-08 12:33:44 -07:00 |
|
Asger F
|
ea384b340a
|
JS: Change note
|
2023-09-08 10:31:04 +02:00 |
|
Asger F
|
e08a873829
|
JS: Tolerate TypeScript files being requested out of order
|
2023-09-08 10:31:04 +02:00 |
|
Max Schaefer
|
46d7165885
|
Explain about redirects to example.com.
|
2023-09-07 09:12:07 +01:00 |
|
Max Schaefer
|
a02f373e79
|
Use better sanitiser.
|
2023-09-06 14:06:16 +01:00 |
|
github-actions[bot]
|
abf2b12b1c
|
Release preparation for version 2.14.4
|
2023-09-05 16:56:14 +00:00 |
|