Jeroen Ketema
|
747cd1745a
|
Update all languages to use the shared taint-tracking library
|
2023-08-04 22:53:25 +02:00 |
|
Tom Hvitved
|
b69188fee9
|
C#: Adopt shared CFG construction library from shared controlflow pack
|
2023-08-03 14:12:24 +02:00 |
|
Mathias Vorreiter Pedersen
|
3007fdab5e
|
Sync identical files.
|
2023-08-02 14:33:33 +02:00 |
|
Anders Schack-Mulligen
|
5c9a839ac7
|
C#: Adjust to use the qlpack data-flow api.
|
2023-08-01 13:47:09 +02:00 |
|
Owen Mansel-Chan
|
9b2b58a823
|
Sync files
|
2023-07-26 21:48:10 +01:00 |
|
Anders Schack-Mulligen
|
95d17045c9
|
Dataflow: Sync.
|
2023-07-19 11:41:15 +02:00 |
|
Anders Schack-Mulligen
|
80a799df01
|
Merge pull request #13735 from aschackmull/dataflow/forcehighprecision-fix
Dataflow: Fix forceHighPrecision for length-2 prefixes.
|
2023-07-14 11:42:35 +02:00 |
|
Anders Schack-Mulligen
|
91de43f918
|
C#/Java/Ruby: Remove superfluous module members.
|
2023-07-13 11:38:35 +02:00 |
|
Anders Schack-Mulligen
|
837df2ad37
|
Dataflow: Sync.
|
2023-07-13 10:55:39 +02:00 |
|
Ed Minnix
|
9618c0b0a1
|
C#: Add default implementation of StateConfigSig::isAdditionalFlowStep/4
|
2023-07-12 15:06:25 -04:00 |
|
Ed Minnix
|
a3c30992b1
|
C#: Add default implementation of StateConfigSig::isBarrier/2
|
2023-07-12 15:06:25 -04:00 |
|
Mathias Vorreiter Pedersen
|
83d0dec0fb
|
DataFlow: Sync identical files.
|
2023-07-06 14:00:00 +01:00 |
|
Joe Farebrother
|
c10a66809d
|
Merge pull request #13094 from joefarebrother/csharp-missing-access-control
C#: Add query for missing function level access control
|
2023-07-05 17:40:59 +01:00 |
|
Michael Nebel
|
238f390738
|
Merge pull request #13452 from michaelnebel/refactorstackprinting
Re-factor printing of summary component stacks.
|
2023-07-04 08:29:10 +02:00 |
|
Michael Nebel
|
243c592447
|
Address review comments.
|
2023-07-03 17:01:08 +02:00 |
|
Michael Nebel
|
b942cd9085
|
C#: Address review comments.
|
2023-07-03 14:36:07 +02:00 |
|
Michael Nebel
|
62fc1b641c
|
C#: Adjust the model generator to produce kinds for neutrals.
|
2023-07-03 14:36:06 +02:00 |
|
Michael Nebel
|
4ee2d628fe
|
C#: Re-factor printing of summary component stacks.
|
2023-07-03 14:36:06 +02:00 |
|
Chuan-kai Lin
|
ce464a7d69
|
Remove pragma[assume_small_delta]
|
2023-06-30 11:09:29 -07:00 |
|
Tom Hvitved
|
160771e673
|
C#: Avoid combinatorial explosions in GVN construction for types
|
2023-06-27 10:08:53 +02:00 |
|
Joe Farebrother
|
b2d54842a6
|
Apply review suggestion
Co-authored-by: Michael Nebel <michaelnebel@github.com>
|
2023-06-23 17:00:52 +01:00 |
|
Mathew Payne
|
0fcc1cb588
|
Merge branch 'main' into csharp-ext
|
2023-06-22 13:30:08 +01:00 |
|
Joe Farebrother
|
52841e9005
|
Apply review suggestions - minor fixes
|
2023-06-22 11:30:58 +01:00 |
|
Joe Farebrother
|
270bcc3740
|
fix qhelp and remove commented out code
|
2023-06-22 11:20:58 +01:00 |
|
Jami
|
5259a6ecfc
|
Merge pull request #13324 from jcogs33/jcogs33/shared-sink-kind-validation
Shared: share MaD kind validation across languages
|
2023-06-20 11:56:12 -04:00 |
|
Mathew Payne
|
62b3d5ea19
|
Merge branch 'main' into csharp-ext
|
2023-06-20 16:17:35 +01:00 |
|
Owen Mansel-Chan
|
cdc1c2c1aa
|
Merge pull request #13454 from owen-mc/go/add-mad-content-for-pointer-content
Go: Add models-as-data content for pointer content
|
2023-06-20 14:26:07 +01:00 |
|
Owen Mansel-Chan
|
d7c97f8759
|
Merge pull request #13455 from owen-mc/dataflow/add-flowCheckNodeSpecific
Dataflow: add language-specific hook for breaking up big step relation
|
2023-06-20 13:24:26 +01:00 |
|
Owen Mansel-Chan
|
04ff89e1fe
|
Update access path documentation
|
2023-06-20 11:05:05 +01:00 |
|
Mathew Payne
|
8347a410b7
|
Merge branch 'main' into csharp-ext
|
2023-06-19 13:25:07 +01:00 |
|
Mathew Payne
|
a6a86acd9a
|
Fix formatting for ExternalFlow
|
2023-06-19 12:44:01 +01:00 |
|
Mathew Payne
|
4597210519
|
Update csharp/ql/lib/semmle/code/csharp/dataflow/ExternalFlow.qll
Co-authored-by: Jami <57204504+jcogs33@users.noreply.github.com>
|
2023-06-19 12:03:46 +01:00 |
|
Mathew Payne
|
861ac177b8
|
Update csharp/ql/lib/semmle/code/csharp/security/dataflow/CommandInjectionQuery.qll
Co-authored-by: Jami <57204504+jcogs33@users.noreply.github.com>
|
2023-06-19 12:03:38 +01:00 |
|
Michael Nebel
|
04736b6e10
|
C#: Add lost QL Doc.
|
2023-06-15 10:00:09 +02:00 |
|
Joe Farebrother
|
9b31b61143
|
Broaden the scope of checks for authorization attributes
|
2023-06-14 16:07:41 +01:00 |
|
Joe Farebrother
|
1500089b86
|
Add test cases for webforms auth via web.config files
|
2023-06-14 16:07:41 +01:00 |
|
Joe Farebrother
|
57b3b2b2e3
|
Add qldoc + exclude empty methods
|
2023-06-14 16:07:40 +01:00 |
|
Joe Farebrother
|
582c4a7fbc
|
Support virtual route mappings for webforms actions
|
2023-06-14 16:07:40 +01:00 |
|
Joe Farebrother
|
63b3e16a54
|
Support Authorize attribute
|
2023-06-14 16:07:40 +01:00 |
|
Joe Farebrother
|
29b5f14283
|
Add support for auth via xml using the physical path
|
2023-06-14 16:07:40 +01:00 |
|
Joe Farebrother
|
e93f3186fe
|
Add missing function level access control query
|
2023-06-14 16:07:40 +01:00 |
|
Owen Mansel-Chan
|
3ff6d033d3
|
Rename to neverSkipInPathGraph
|
2023-06-14 15:29:54 +01:00 |
|
Owen Mansel-Chan
|
5f72ce0935
|
Add stub implementations of flowCheckNodeSpecific
|
2023-06-14 14:46:35 +01:00 |
|
Owen Mansel-Chan
|
e0f7437d40
|
Sync dataflow library
|
2023-06-14 14:29:56 +01:00 |
|
Jami
|
35591113c2
|
Merge branch 'main' into jcogs33/shared-sink-kind-validation
|
2023-06-14 08:06:34 -04:00 |
|
Michael Nebel
|
f26c514426
|
C#: Remove the JumpReturnKind and the related summary component stack.
|
2023-06-14 14:00:19 +02:00 |
|
Michael Nebel
|
afec9b05e9
|
Merge pull request #13147 from michaelnebel/csharp/entityframeworkrefactor
C#: Use synthetic global in the EntityFramework code instead of jump steps.
|
2023-06-14 13:47:56 +02:00 |
|
Michael Nebel
|
2200a2ae79
|
C#: Address review comments.
|
2023-06-14 11:25:31 +02:00 |
|
Michael Nebel
|
9690ff6177
|
C#: Address review comments.
|
2023-06-13 14:19:17 +02:00 |
|
Anders Schack-Mulligen
|
2d616d494e
|
C#/Ruby: Add fields as per review comments.
|
2023-06-13 11:26:30 +02:00 |
|