Anders Schack-Mulligen
|
37d78249e7
|
Java: Update provenance ids.
|
2024-07-16 11:11:54 +02:00 |
|
Anders Schack-Mulligen
|
2bfd65f145
|
Java: update expected output
|
2024-07-16 11:11:54 +02:00 |
|
Anders Schack-Mulligen
|
b2f57b4b48
|
Java: Update expected output.
|
2024-07-16 11:11:53 +02:00 |
|
Anders Schack-Mulligen
|
938f46b888
|
Java: Remove superfluous clone models.
|
2024-07-16 11:11:53 +02:00 |
|
Anders Schack-Mulligen
|
dc64a08467
|
Java: Update test expectations for Object.clone().
|
2024-07-16 11:11:52 +02:00 |
|
Anders Schack-Mulligen
|
12d6875cc4
|
Java: Replace the MaD Object.clone() models with a non-aliasing value step.
|
2024-07-16 11:11:50 +02:00 |
|
Jami Cogswell
|
8f6d4be256
|
Java: update tests
|
2024-07-15 14:33:40 -04:00 |
|
Jami
|
b70a4c839c
|
Merge branch 'main' into jcogs33/add-toByteArray-summaries
|
2024-07-15 12:35:05 -04:00 |
|
Jami Cogswell
|
7f34dd1e0a
|
Java: update change note
|
2024-07-15 12:15:02 -04:00 |
|
Jami Cogswell
|
cd82ada239
|
Java: add manual models for all overloads of IOUtils.toByteArray
|
2024-07-15 12:12:31 -04:00 |
|
Anders Schack-Mulligen
|
da5abc8321
|
Dataflow: Replace MakeSets with QlBuiltins::InternSets.
|
2024-07-15 13:35:57 +02:00 |
|
Ian Lynagh
|
a951718f2e
|
Merge pull request #16955 from igfoo/igfoo/kotlin-ga
Kotlin: Kotlin support is now out of beta, and generally available
|
2024-07-15 11:30:20 +01:00 |
|
github-actions[bot]
|
7fc95b8eff
|
Add changed framework coverage reports
|
2024-07-14 00:20:23 +00:00 |
|
am0o0
|
bf506f8a9e
|
remove redundent stubs
|
2024-07-13 18:06:02 +02:00 |
|
am0o0
|
71e1d63953
|
finilize tests
|
2024-07-13 18:00:50 +02:00 |
|
am0o0
|
d8e2d355df
|
categorize the new stubs
|
2024-07-13 17:25:38 +02:00 |
|
am0o0
|
8f7c690529
|
revert some mistakes
|
2024-07-13 17:03:24 +02:00 |
|
am0o0
|
1d1c476674
|
update tests and use TaintFlowTestArgString
add stubs
add missed sink models
|
2024-07-13 16:58:51 +02:00 |
|
Chris Smowton
|
1cb9f6370f
|
Use hasTaintFlow marker
|
2024-07-13 13:09:43 +02:00 |
|
Chris Smowton
|
059a1389c6
|
Run TaintedPath query on experimental tests
|
2024-07-13 13:09:26 +02:00 |
|
Chris Smowton
|
4e9a528df9
|
Move experimental tests
|
2024-07-13 13:09:08 +02:00 |
|
am0o0
|
025aa77e79
|
add the snappy missed sink
|
2024-07-13 11:15:45 +02:00 |
|
am0o0
|
8c106964ec
|
remove duplicate parts thanks to @owen-mc
|
2024-07-13 11:11:07 +02:00 |
|
am0o0
|
3868b386f3
|
update inline tests
|
2024-07-13 10:47:42 +02:00 |
|
am0o0
|
0165696a1e
|
update tests
|
2024-07-13 10:33:35 +02:00 |
|
am0o0
|
8ba48e801a
|
fix examples
|
2024-07-13 10:28:19 +02:00 |
|
am0o0
|
dd3cc33298
|
move DecompressionBombsFlow::PathGraph to DecompressionBomb.ql
|
2024-07-13 10:24:07 +02:00 |
|
am0o0
|
c824aa4e45
|
delete pom.xml
|
2024-07-13 10:21:53 +02:00 |
|
Am
|
a3b5d2a28d
|
Update java/ql/src/experimental/Security/CWE/CWE-522-DecompressionBombs/DecompressionBomb.qhelp
Co-authored-by: Owen Mansel-Chan <62447351+owen-mc@users.noreply.github.com>
|
2024-07-13 10:20:43 +02:00 |
|
Am
|
4fbf76008e
|
Update java/ql/src/experimental/Security/CWE/CWE-522-DecompressionBombs/DecompressionBomb.qhelp
Co-authored-by: Owen Mansel-Chan <62447351+owen-mc@users.noreply.github.com>
|
2024-07-13 10:20:25 +02:00 |
|
Owen Mansel-Chan
|
b7a5252cb0
|
Refactor inAndroidApplication
|
2024-07-13 07:35:02 +01:00 |
|
Owen Mansel-Chan
|
8dcef8223f
|
Tweak change note
|
2024-07-13 07:31:18 +01:00 |
|
Jami Cogswell
|
6b497da15f
|
Java: fix line number changes in tests
|
2024-07-11 15:33:09 -04:00 |
|
Jami Cogswell
|
ab9a6faaf3
|
Java: add change note
|
2024-07-11 15:10:11 -04:00 |
|
Jami Cogswell
|
77a8ba934c
|
Java: add path-injection sink for hudson.FilePath.exists()
|
2024-07-11 15:03:40 -04:00 |
|
Jami Cogswell
|
744a1a9b72
|
Java: fix line number changes in tests
|
2024-07-11 14:07:23 -04:00 |
|
Jami Cogswell
|
5cf05ec863
|
Java: add change note
|
2024-07-11 13:40:50 -04:00 |
|
Jami Cogswell
|
4a1497f367
|
Java: add IOUtils.toByteArray(InputStream) summary
|
2024-07-11 13:33:08 -04:00 |
|
Ian Lynagh
|
5c97a5f667
|
Kotlin: Kotlin support is now out of beta, and generally available
|
2024-07-11 16:11:40 +01:00 |
|
Max Schaefer
|
d5d0cf5d90
|
Java: Tag java/non-https-url with CWE-345
|
2024-07-11 13:37:09 +01:00 |
|
Ian Lynagh
|
311799c798
|
Merge pull request #16899 from igfoo/igfoo/semmle_dist
Java/Kotlin: Remove legacy $SEMMLE_DIST support
|
2024-07-11 12:48:53 +01:00 |
|
am0o0
|
dd4bce8e30
|
finilize tests
|
2024-07-09 19:48:58 +02:00 |
|
am0o0
|
7a5838f1a2
|
MethodAccess => MethodCall
|
2024-07-09 19:43:22 +02:00 |
|
am0o0
|
e87d2fe922
|
remove redundent imports
|
2024-07-09 19:41:06 +02:00 |
|
Angela P Wen
|
80bd361607
|
Merge pull request #16926 from github/post-release-prep/codeql-cli-2.18.0
Post-release preparation for codeql-cli-2.18.0
|
2024-07-08 16:51:16 +02:00 |
|
Owen Mansel-Chan
|
b83147fa44
|
Add links on threat models to change note
|
2024-07-08 15:39:27 +01:00 |
|
Owen Mansel-Chan
|
8241d0b7ef
|
Update QLDoc for ReverseDnsUserInput
|
2024-07-08 15:33:39 +01:00 |
|
github-actions[bot]
|
ae3aba061b
|
Post-release preparation for codeql-cli-2.18.0
|
2024-07-08 13:30:13 +00:00 |
|
Paolo Tranquilli
|
a30e7d2cfd
|
Kotlin: add all .kotlin_* in dev to .gitignore
|
2024-07-08 13:18:56 +02:00 |
|
Angela P Wen
|
dc20b0d19e
|
Merge pull request #16921 from github/release-prep/2.18.0
Release preparation for version 2.18.0
|
2024-07-08 13:12:57 +02:00 |
|