Asger F
|
3acd4814de
|
Merge branch 'main' into js/shared-dataflow-merge-main
|
2024-12-19 10:14:38 +01:00 |
|
Michael Nebel
|
c3fe3e468c
|
Javascript: Update all test util paths to point to the new location.
|
2024-12-12 13:54:25 +01:00 |
|
Asger F
|
0ce1fe767d
|
JS: Deprecate ConsistencyChecking to avoid deprecation warnings
|
2024-12-03 14:30:23 +01:00 |
|
Asger F
|
53efb5837b
|
JS: Update some tests with provenance columns
Only includes the changes that purely contain the new provenance columns
|
2024-06-26 13:51:44 +02:00 |
|
Asger F
|
5e7d1d5c2c
|
Merge branch 'main' into js/shared-dataflow-merged
|
2024-03-13 14:27:16 +01:00 |
|
Max Schaefer
|
2c7291336d
|
Move test files into right directory.
|
2023-10-26 12:16:52 +01:00 |
|
Max Schaefer
|
bb146a1758
|
JavaScript: Add support for rateLimit export from express-rate-limit package.
|
2023-10-26 12:14:57 +01:00 |
|
Asger F
|
4af7694309
|
JS: Port ResourceExhaustion
|
2023-10-13 13:15:05 +02:00 |
|
Mark Vogelgesang
|
c9119848d9
|
Updated express-rate-limit example to match implementation examples found on packages README
|
2023-01-18 14:42:40 -05:00 |
|
erik-krogh
|
368f84785b
|
fix some more style-guide violations in the alert-messages
|
2022-10-07 11:22:22 +02:00 |
|
Asger F
|
db4b6d620a
|
JS: Remove Buffer.from as sink for js/resource-exhaustion
|
2022-05-24 14:18:05 +02:00 |
|
Erik Krogh Kristensen
|
8669bbd948
|
update expected output of rate-limit query after test reorg
|
2022-04-19 14:27:24 +02:00 |
|
Erik Krogh Kristensen
|
4c97f68a3d
|
remove postmessage events as source for js/resource-exhaustion
|
2022-04-13 23:14:42 +02:00 |
|
Erik Krogh Kristensen
|
51a0b6d501
|
remove client-side remote-flow from js/resource-exhaustion
|
2022-04-13 23:05:59 +02:00 |
|
Erik Krogh Kristensen
|
a9595af01e
|
update expected output
|
2022-04-13 09:43:21 +02:00 |
|
Erik Krogh Kristensen
|
dd28157d0a
|
add test of a length check
|
2022-04-13 09:43:21 +02:00 |
|
Erik Krogh Kristensen
|
8e47a9b242
|
add sanitizer step for .length in js/resource-exhaustion
|
2022-04-13 09:30:09 +02:00 |
|
Erik Krogh Kristensen
|
ebf9ba7250
|
remove the type-overloaded new Buffer() as a sink
|
2022-04-12 16:29:58 +02:00 |
|
Erik Krogh Kristensen
|
e2b7f7d05d
|
reintroduce the number sinks
|
2022-04-12 16:26:10 +02:00 |
|
Erik Krogh Kristensen
|
029459cc35
|
reorganize CWE-770 tests
|
2022-04-12 16:15:40 +02:00 |
|
Erik Krogh Kristensen
|
8fb54c3f32
|
move js/resource-exhaustion out of experimental
|
2022-04-12 15:51:36 +02:00 |
|
Asger Feldthaus
|
4d85799fc7
|
JS: Add test for fastify-rate-limit
|
2021-12-15 16:18:22 +01:00 |
|
Asger Feldthaus
|
d0e94e655d
|
JS: Exclude error handling from auth calls
|
2021-12-07 10:46:17 +01:00 |
|
Asger Feldthaus
|
5269933461
|
JS: Port missing rate limiting query
|
2021-12-07 10:44:19 +01:00 |
|
Asger Feldthaus
|
f8d428cb2d
|
JS: Use function-forwarding steps when tracking rate limiters
|
2021-04-20 13:00:42 +01:00 |
|
Asger Feldthaus
|
581f4ed757
|
JS: Generalize handling of route handler wrapper functions
|
2021-04-20 12:46:40 +01:00 |
|
Max Schaefer
|
e3a9906071
|
JavaScript: Switch MissingRateLimiting.qll to API graphs.
The added test shows how this helps us avoid false positives.
|
2020-09-02 17:35:47 +01:00 |
|
Max Schaefer
|
3970ead7ab
|
JavaScript: Add support for rate-limiter-flexible package.
|
2019-09-18 12:25:33 +01:00 |
|
Esben Sparre Andreasen
|
b6951d8249
|
JS: add tests for improved js/missing-rate-limiting
|
2018-08-06 15:15:44 +02:00 |
|
Pavel Avgustinov
|
b55526aa58
|
QL code and tests for C#/C++/JavaScript.
|
2018-08-02 17:53:23 +01:00 |
|