Asger F
|
c5a02dae2b
|
Merge pull request #15768 from asgerf/js/amd-pseudo-deps
JS: Do not treat AMD pseudo-dependencies as imports
|
2024-03-13 12:49:17 +01:00 |
|
Asger F
|
fa8933eb41
|
JS: Reduce duplication in UnsafeDynamicMethodAccessQuery
|
2024-03-13 12:30:05 +01:00 |
|
Asger F
|
ea4bc9cdbb
|
JS: Comment about manually applying taint steps
|
2024-03-13 12:30:05 +01:00 |
|
erik-krogh
|
129286aa1c
|
allow more flow through .filter()
|
2024-03-13 12:03:00 +01:00 |
|
Asger F
|
406b080ce3
|
JS: Add comment about allowImplicitRead in PostMessageStar
|
2024-03-13 11:30:52 +01:00 |
|
Asger F
|
0a2050bc42
|
JS: Deduplicate predicate in HostHeaderPoisoningQuery
|
2024-03-13 11:27:18 +01:00 |
|
Asger F
|
11983faccf
|
JS: Remove out-commented code
|
2024-03-13 11:26:56 +01:00 |
|
Asger F
|
b31f20a64e
|
JS: Explain why ObjetWrapperFlowLabel is deprecated
|
2024-03-13 11:08:25 +01:00 |
|
Asger F
|
e0aae53ac7
|
JS: Remove unnecessary BarrierGuardLegacy class
|
2024-03-13 11:05:23 +01:00 |
|
Asger F
|
fce2be0af3
|
JS: Use BarrierGuardLegacy in TaintedPath
|
2024-03-13 11:02:09 +01:00 |
|
Asger F
|
e640154048
|
JS: Be backwards compatible with AdditionalBarrierGuardNode
I've confirmed that the 'legacyBarrier' predicate does not occur in the DIL
|
2024-03-13 10:54:02 +01:00 |
|
Asger F
|
14e75be510
|
JS: Expand comments and synthetic node name in ForOfLoops
|
2024-03-13 09:27:00 +01:00 |
|
Asger F
|
e66f27cfe3
|
JS: Move hasWildcardReplaceRegExp to a shared place
|
2024-03-13 09:19:26 +01:00 |
|
Asger F
|
4043bc13ab
|
JS: Explicit mark comment as a TODO
|
2024-03-13 09:19:03 +01:00 |
|
Asger F
|
858c79e395
|
JS: Add plain taint step through Promise.all()
|
2024-03-13 08:57:42 +01:00 |
|
Asger F
|
2c1aa08f79
|
JS: Rename Strings2 -> Strings
|
2024-03-12 21:18:14 +01:00 |
|
Asger F
|
478dd25f3e
|
JS: Rename Sets2 -> Sets
|
2024-03-12 21:17:29 +01:00 |
|
Asger F
|
433489478d
|
JS: Rename Promise2 -> Promise
|
2024-03-12 21:16:43 +01:00 |
|
Asger F
|
e2f3565227
|
JS: Rename Maps2 -> Maps
|
2024-03-12 21:14:29 +01:00 |
|
Asger F
|
b3fad7a8dc
|
JS: Rename Iterators2 -> Iterators
|
2024-03-12 15:12:07 +01:00 |
|
Asger F
|
5aafd33cec
|
JS: Rename Arrays2 -> Arrays
|
2024-03-12 15:11:29 +01:00 |
|
Asger F
|
76e0445af0
|
JS: Be consistent about caching in PreCallGraphStep
|
2024-03-12 15:08:59 +01:00 |
|
Asger F
|
28fc8ba0c1
|
JS: Remove EmptyType
|
2024-03-12 14:59:04 +01:00 |
|
Asger F
|
f94aa2ceec
|
Update javascript/ql/lib/semmle/javascript/dataflow/internal/DataFlowNode.qll
|
2024-03-12 14:41:11 +01:00 |
|
erik-krogh
|
9f410eb2d6
|
Merge branch 'main' into ts-54
|
2024-03-11 18:07:52 +01:00 |
|
Asger F
|
7c35309732
|
Merge pull request #15823 from asgerf/js/lift-cg-restriction
JS: Call graph improvements
|
2024-03-08 13:40:38 +01:00 |
|
Asger F
|
245cd5c0b5
|
Merge pull request #15760 from asgerf/js/summarised-tt-store-steps
JS: Summarise store steps for type tracking
|
2024-03-08 13:16:25 +01:00 |
|
Asger F
|
ac4601cb8f
|
Update javascript/ql/lib/semmle/javascript/dataflow/internal/CallGraphs.qll
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2024-03-08 13:01:38 +01:00 |
|
github-actions[bot]
|
dc9092c9ec
|
Post-release preparation for codeql-cli-2.16.4
|
2024-03-06 22:19:33 +00:00 |
|
github-actions[bot]
|
2f058ffb4d
|
Release preparation for version 2.16.4
|
2024-03-06 20:56:51 +00:00 |
|
Angela P Wen
|
ce31f8641a
|
Revert "Release preparation for version 2.16.4"
|
2024-03-06 12:07:33 -08:00 |
|
Asger F
|
a54a73c9a2
|
JS: Detect more FunctionStyleClasses
|
2024-03-06 11:37:20 +01:00 |
|
github-actions[bot]
|
661e68dab5
|
Release preparation for version 2.16.4
|
2024-03-05 18:13:58 +00:00 |
|
Angela P Wen
|
967963a653
|
Revert "Release preparation for version 2.16.4"
|
2024-03-05 08:53:33 -08:00 |
|
github-actions[bot]
|
a67218a027
|
Release preparation for version 2.16.4
|
2024-03-04 17:42:08 +00:00 |
|
Asger F
|
4ab7acedb6
|
JS: Do not track instance methods
|
2024-03-04 10:36:13 +01:00 |
|
Asger F
|
f5d014baa5
|
JS: Remove allocation site restriction in CG
|
2024-03-01 23:20:35 +01:00 |
|
Asger F
|
13e3a5158e
|
JS: Fix qldoc
|
2024-02-29 13:59:25 +01:00 |
|
Asger F
|
6a0adff1dc
|
JS: More precise detection of classes with escaping instances
|
2024-02-29 11:15:37 +01:00 |
|
Asger F
|
853397361f
|
JS: Do not treat AMD pseudo-dependencies as file paths
|
2024-02-29 10:23:28 +01:00 |
|
Asger F
|
052a8e7f81
|
JS: Avoid spurious recursion in AMD
|
2024-02-29 10:23:28 +01:00 |
|
Asger F
|
f384afbaf6
|
JS: Also summarize loadStore steps
|
2024-02-29 10:11:16 +01:00 |
|
Asger F
|
3ad83cc098
|
JS: Summarise store steps for type tracking
|
2024-02-29 10:10:39 +01:00 |
|
erik-krogh
|
0056067a17
|
Merge branch 'main' into ts-54
|
2024-02-25 21:20:43 +01:00 |
|
Tom Hvitved
|
62b16c0fa3
|
Share getFileBySourceArchiveName implementation
|
2024-02-23 11:25:49 +01:00 |
|
Asger F
|
db10c229de
|
Merge pull request #15663 from asgerf/js/endpoint-naming2
JS: Improvements to endpoint naming
|
2024-02-21 19:36:57 +01:00 |
|
github-actions[bot]
|
37f8fa3413
|
Post-release preparation for codeql-cli-2.16.3
|
2024-02-20 16:50:47 +00:00 |
|
github-actions[bot]
|
6d061fbc35
|
Release preparation for version 2.16.3
|
2024-02-20 14:26:23 +00:00 |
|
Asger F
|
29ffeb6da5
|
JS: Fix qldoc
|
2024-02-20 14:00:32 +01:00 |
|
Asger F
|
c324b2aed8
|
JS: Refactor
|
2024-02-19 13:59:49 +01:00 |
|