Anders Schack-Mulligen
|
43d1b0ab27
|
Java: Update qltests.
|
2021-06-01 11:47:52 +02:00 |
|
Alvaro Muñoz
|
735e4e4b7b
|
update failing tests
|
2021-05-28 15:13:18 +02:00 |
|
Tony Torralba
|
7dbdba28cc
|
Consider search methods with unsafe SearchControls
|
2021-05-21 15:21:04 +02:00 |
|
Tony Torralba
|
c1e71b60b4
|
Use InlineExpectationsTest
|
2021-05-20 12:00:11 +02:00 |
|
Tony Torralba
|
1351516e9a
|
Moved JNDI injection related files from experimental to standard
|
2021-05-19 11:32:51 +02:00 |
|
Tony Torralba
|
e58746508d
|
Merge branch 'main' into atorralba/promote-ognl-injection
|
2021-05-19 10:41:08 +02:00 |
|
Tony Torralba
|
34a55e77ef
|
Add missing subtype test
|
2021-05-18 09:38:35 +02:00 |
|
Tony Torralba
|
bc2370ae1d
|
Use InlineExpectationsTest for tests
|
2021-05-17 15:58:33 +02:00 |
|
Tony Torralba
|
3e4ccaf9a8
|
Move from experimental to standard
|
2021-05-17 10:41:54 +02:00 |
|
haby0
|
60fc607449
|
Modify ql
|
2021-05-14 18:17:05 +08:00 |
|
Tony Torralba
|
db732918af
|
Add taint step for setExpression
|
2021-05-13 15:01:36 +02:00 |
|
Tony Torralba
|
09b40601a7
|
Consider ExpressionAccessor
|
2021-05-12 12:32:38 +02:00 |
|
Anders Schack-Mulligen
|
a247ae4357
|
Merge pull request #5843 from JLLeitschuh/feat/JLL/improve_kryo_support
[Java] Fix Kryo FP & Kryo 5 Support
|
2021-05-12 09:52:24 +02:00 |
|
haby0
|
12f47bcf24
|
Add UnsafeDeserialization
|
2021-05-12 12:37:16 +08:00 |
|
Marcono1234
|
8969da7775
|
Java: Improve not closing resource query; add tests
|
2021-05-11 19:32:02 +02:00 |
|
Tony Torralba
|
8754c85a57
|
Use InlineExpectationsTest
|
2021-05-11 16:23:12 +02:00 |
|
Tony Torralba
|
fc03b92e11
|
Moved from experimental to standard
|
2021-05-11 15:42:13 +02:00 |
|
Tony Torralba
|
d99b5bfc66
|
Reuse previous tests from experimental
|
2021-05-10 11:17:20 +02:00 |
|
Tony Torralba
|
c70503142f
|
Require JS enabled even when cross-origin access is enabled in the webviews
|
2021-05-10 09:45:59 +02:00 |
|
Tony Torralba
|
6884edf52a
|
Merge branch 'main' into atorralba/promote-unsafe-android-webview-fetch
|
2021-05-07 16:31:55 +02:00 |
|
luchua-bc
|
fc7d340a89
|
Query to detect hard-coded Azure credentials
|
2021-05-07 13:16:41 +00:00 |
|
Tony Torralba
|
dcee1daa31
|
Mark spurious test results
|
2021-05-07 13:17:04 +02:00 |
|
Tony Torralba
|
e78e5b9ee4
|
Merge branch 'main' into promote-jexl-injection
|
2021-05-07 12:36:49 +02:00 |
|
Tony Torralba
|
b37b15cea4
|
Re-structure imports, add some new comments to tests
|
2021-05-07 12:33:51 +02:00 |
|
Tony Torralba
|
2a501956b3
|
Mark a MISSING test result as suggested in code review
|
2021-05-07 11:17:51 +02:00 |
|
Tony Torralba
|
b69261727d
|
Add a new test for
|
2021-05-06 13:26:25 +02:00 |
|
Tony Torralba
|
1f1f85aeb5
|
Add change note and fix some QLDocs
|
2021-05-06 13:13:23 +02:00 |
|
Tony Torralba
|
f1fab854c4
|
Fix tests for XXE, introduced a dependency with jaxen
|
2021-05-06 12:11:55 +02:00 |
|
Tony Torralba
|
84504a88e4
|
Fix tests by adding AndroidManifest.xml
|
2021-05-06 10:55:56 +02:00 |
|
Tony Torralba
|
76468559ba
|
Add safe example for dom4j
|
2021-05-06 10:17:25 +02:00 |
|
Tony Torralba
|
926fedb7fb
|
Update java/ql/test/query-tests/security/CWE-643/XPathInjectionTest.java
Co-authored-by: Marcono1234 <Marcono1234@users.noreply.github.com>
|
2021-05-06 09:18:50 +02:00 |
|
Tony Torralba
|
00a7576679
|
Rename XPath Injection test file
|
2021-05-06 09:18:50 +02:00 |
|
Tony Torralba
|
8af7f4a484
|
New sinks and test cases
|
2021-05-06 09:18:49 +02:00 |
|
Tony Torralba
|
ccb3ea4453
|
Fix XPath Injection tests classpath
|
2021-05-06 09:18:49 +02:00 |
|
Tony Torralba
|
26c3ff2cee
|
Move from experimental to standard
|
2021-05-06 09:18:49 +02:00 |
|
Tony Torralba
|
a706046a19
|
Reestructured test
|
2021-05-06 09:17:53 +02:00 |
|
Jonathan Leitschuh
|
67e9f06304
|
[Java] Fix Kryo FP & Kryo 5 Support
Closes #4992
|
2021-05-05 17:38:34 -04:00 |
|
Tony Torralba
|
03ce8d689f
|
Refactored to use CSV sink model
|
2021-05-05 16:34:30 +02:00 |
|
Tony Torralba
|
9b78cee37a
|
Add tests
|
2021-05-05 11:59:57 +02:00 |
|
Tony Torralba
|
e68c6e66a5
|
Remove qlref file
|
2021-05-03 17:53:37 +02:00 |
|
Tony Torralba
|
4d5ec87de9
|
Use InlineTest
|
2021-05-03 13:27:24 +02:00 |
|
Tony Torralba
|
4bfd34b1fe
|
Moved from experimental
|
2021-05-03 13:15:24 +02:00 |
|
Tamas Vajk
|
e25305e3cc
|
Java: Introduce LoC summary metric query
|
2021-04-21 14:27:00 +02:00 |
|
yo-h
|
cb524b6c19
|
Merge pull request #5611 from github/yo-h/java16
Java: adjust test `options` for JDK 16 upgrade
|
2021-04-19 15:12:23 -04:00 |
|
Anders Schack-Mulligen
|
175c71221a
|
Java: Adjust some test output with more edges/nodes.
|
2021-04-19 14:06:27 +02:00 |
|
Anders Schack-Mulligen
|
29aec0d770
|
Java: Adjust expected output.
|
2021-04-19 13:16:46 +02:00 |
|
Anders Schack-Mulligen
|
c5193cf03f
|
Apply suggestions from code review
|
2021-04-19 13:14:56 +02:00 |
|
Anders Schack-Mulligen
|
06514159be
|
Java: Add XXE tests.
|
2021-04-19 10:58:21 +02:00 |
|
Anders Schack-Mulligen
|
daad62c4e0
|
Java: Add TaintedPath test.
|
2021-04-19 10:07:03 +02:00 |
|
yo-h
|
cc63563a88
|
Merge remote-tracking branch 'upstream-public/main' into yo-h/java16
|
2021-04-06 13:16:02 -04:00 |
|