Tamas Vajk
|
d9b3726ee8
|
Kotlin: Add test case for doc comment on init block
|
2022-08-30 15:37:00 +02:00 |
|
Tamas Vajk
|
3513bb8eed
|
Kotlin: Change Modifiable::isPublic to not cover Kotlin internal members
|
2022-08-30 14:37:27 +02:00 |
|
Tamas Vajk
|
d9086e6328
|
Kotlin: Add test case for internal member accessed from java
|
2022-08-30 14:26:12 +02:00 |
|
Tony Torralba
|
1f83c5833b
|
Merge pull request #10092 from zbazztian/zbazztian/string.replace-taint
Java: Add additional taint steps for java.lang.String methods
|
2022-08-30 12:24:37 +02:00 |
|
Anders Schack-Mulligen
|
e26a7fc4f3
|
Merge pull request #10173 from zbazztian/spring-crudrepository
Java: Add data flow model for Spring's CrudRepository.save() method
|
2022-08-29 15:00:07 +02:00 |
|
Michael Nebel
|
dbfd16647b
|
Java: Add negative model CSV validation test.
|
2022-08-29 14:29:32 +02:00 |
|
Tamás Vajk
|
4f5c06fed7
|
Merge pull request #10169 from tamasvajk/kotlin-array-iterator
Kotlin: fix array iterator extraction
|
2022-08-26 08:33:52 +02:00 |
|
Erik Krogh Kristensen
|
06afe9c0f4
|
Merge pull request #9816 from erik-krogh/msgConsis
Make alert messages consistent across languages
|
2022-08-25 15:20:01 +02:00 |
|
Sebastian Bauersfeld
|
a486a89cee
|
Java: Taint flow through org.springframework.data.repository.CrudRepository.save().
|
2022-08-25 17:58:24 +07:00 |
|
erik-krogh
|
c7aa58252a
|
change "does not seem to check" to "does not check" in unchecked-cast-in-equals queries
|
2022-08-25 12:31:58 +02:00 |
|
Ian Lynagh
|
bf6d9f8c23
|
Merge pull request #10161 from igfoo/igfoo/exec
Make a load of files non-executable
|
2022-08-25 10:05:39 +01:00 |
|
Tamas Vajk
|
15305fd9bb
|
Kotlin: Fix iterator extraction of IntArray, BooleanArray, ...
|
2022-08-25 11:05:17 +02:00 |
|
Tamas Vajk
|
7196fdd475
|
Kotlin: fix array iterator extraction to work outside of for loops
|
2022-08-25 09:23:34 +02:00 |
|
Tamas Vajk
|
af2614be84
|
Kotlin: Add array iterator tests
|
2022-08-25 09:17:50 +02:00 |
|
Ian Lynagh
|
237b3670b4
|
Make *.xml non-executable
|
2022-08-24 16:53:48 +01:00 |
|
Ian Lynagh
|
bb73767042
|
Make *.java non-executable
|
2022-08-24 16:38:03 +01:00 |
|
Jami
|
b3e88f8234
|
Merge pull request #9983 from jcogs33/android-implicit-export
Java: query to detect implicitly exported Android components
|
2022-08-24 10:52:50 -04:00 |
|
erik-krogh
|
1c0f2251e2
|
Merge branch 'main' into msgConsis
|
2022-08-24 14:38:57 +02:00 |
|
Michael Nebel
|
a412c955e7
|
Java: One implementation of the interface has no flow (which seems unsound and contradicting our assumptions on interface 'contracts') - this now yields a negative summary.
|
2022-08-24 09:58:54 +02:00 |
|
Michael Nebel
|
2e273f2273
|
C#: Re-arange the import order, such that CsvValidation follows ExternalFlow directly.
|
2022-08-24 09:58:54 +02:00 |
|
Michael Nebel
|
37976d56bc
|
C#/Java/Go/Swift: Move CsvValidation back into ExternalFlow.
|
2022-08-24 09:58:53 +02:00 |
|
Michael Nebel
|
4939439982
|
Java: Re-factor CSV Validation into standalone module.
|
2022-08-24 09:58:52 +02:00 |
|
Michael Nebel
|
120fb25702
|
Java: Sync files and model generator and tests.
|
2022-08-24 09:58:52 +02:00 |
|
Erik Krogh Kristensen
|
4df2e5d937
|
Merge pull request #10096 from erik-krogh/acronyms-part1
make acronyms camelcase
|
2022-08-24 09:33:53 +02:00 |
|
erik-krogh
|
27fcc90a97
|
Merge branch 'main' into msgConsis
|
2022-08-24 09:21:43 +02:00 |
|
Tamás Vajk
|
ecde0abc04
|
Merge pull request #10091 from tamasvajk/kotlin-data-class
Kotlin: Identify data classes during extraction
|
2022-08-24 08:45:41 +02:00 |
|
Tony Torralba
|
7070c4a2d2
|
Add summaries for ContentResolver and adjacent classes
|
2022-08-23 14:12:35 +02:00 |
|
erik-krogh
|
1a7d3ee831
|
update expected output after changing queries
|
2022-08-23 12:35:32 +02:00 |
|
Chris Smowton
|
0a7350f3bf
|
Merge pull request #10041 from smowton/AddSensitiveApiCalls
Java: support more libraries in hardcoded-credentials queries
|
2022-08-23 10:51:04 +01:00 |
|
Joe Farebrother
|
ac79866799
|
Merge pull request #9982 from joefarebrother/rsa-without-oaep
Java: Add query for RSA without OAEP
|
2022-08-23 09:14:46 +01:00 |
|
Tony Torralba
|
a3f27d4abe
|
Merge pull request #10131 from atorralba/atorralba/path-steps
Java: Add new java.nio.Path{,s} summary models
|
2022-08-23 09:47:34 +02:00 |
|
erik-krogh
|
94ec0b8a52
|
update expected output of tests
|
2022-08-23 07:19:37 +02:00 |
|
erik-krogh
|
7e0bd5bde4
|
update expected output of tests
|
2022-08-22 21:41:47 +02:00 |
|
erik-krogh
|
e89e0eb7fb
|
make some acronyms camelCase
|
2022-08-22 21:22:35 +02:00 |
|
Jami Cogswell
|
eee12264c3
|
excluded action main from query results, added unit test
|
2022-08-22 12:41:22 -04:00 |
|
Jami Cogswell
|
0934c1d184
|
resolved merge conflict in AndroidManifest lib
|
2022-08-22 12:41:22 -04:00 |
|
Jami Cogswell
|
115f76ac5a
|
fixed typo in unit tests; added a couple more tests
|
2022-08-22 12:41:22 -04:00 |
|
Jami Cogswell
|
b88d545c49
|
added unit tests
|
2022-08-22 12:41:22 -04:00 |
|
Jami Cogswell
|
10fa687e26
|
updated help file and unit tests
|
2022-08-22 12:41:22 -04:00 |
|
Jami Cogswell
|
60921a0355
|
switched to checking for permission attr in application elem instead of in manifest elem
|
2022-08-22 12:41:22 -04:00 |
|
Jami Cogswell
|
a6ecac6e00
|
third draft with category launcher and permission element excluded
|
2022-08-22 12:41:22 -04:00 |
|
Jami Cogswell
|
8d5bbc458f
|
first draft of query and tests
|
2022-08-22 12:41:22 -04:00 |
|
Jami Cogswell
|
3e09d86a4f
|
adding starter files
|
2022-08-22 12:41:22 -04:00 |
|
Erik Krogh Kristensen
|
eadd85bce9
|
Merge pull request #10073 from erik-krogh/XMLXml
rename all occurrences of XML to Xml
|
2022-08-22 16:18:27 +02:00 |
|
Tamás Vajk
|
aa0ff2b53f
|
Merge pull request #10129 from tamasvajk/kotlin-fix-comment-type-alias
Kotlin: Extract type alias doc comments
|
2022-08-22 16:10:50 +02:00 |
|
Tony Torralba
|
ee6ac744c5
|
Add new Path steps and tests
|
2022-08-22 15:54:20 +02:00 |
|
erik-krogh
|
ce9f69a639
|
rename all occurrences of XML to Xml
|
2022-08-22 14:08:31 +02:00 |
|
Tony Torralba
|
72c204063d
|
Merge pull request #10115 from atorralba/atorralba/fragment-fix
Java: Add support for androidx.fragment.app.Fragment
|
2022-08-22 12:53:19 +02:00 |
|
Tamas Vajk
|
25098ef2d8
|
Kotlin: Extract type alias doc comments
|
2022-08-22 12:31:13 +02:00 |
|
Tony Torralba
|
3314b56ffe
|
Fix Fragment tests after androidx stubs update
|
2022-08-22 11:13:19 +02:00 |
|