yh-semmle
|
50a905d54a
|
Merge pull request #459 from aschackmull/java/inherit-fix
Java: Fix inheritance relation for co-/contra-variant subtypes.
|
2018-11-14 10:53:41 -05:00 |
|
Aditya Sharad
|
f0715b09e1
|
Merge master into next.
|
2018-11-14 10:06:27 +00:00 |
|
Arthur Baars
|
969c2796a0
|
Merge pull request #457 from adityasharad/merge/1.18-master-131118
Merge rc/1.18 into master.
|
2018-11-13 22:25:03 +01:00 |
|
Felicity Chapman
|
fe15159756
|
Update for feedback
|
2018-11-13 16:34:06 +00:00 |
|
Anders Schack-Mulligen
|
fe8dfeec0d
|
Java: Add some this-qualifiers.
|
2018-11-13 14:58:25 +01:00 |
|
Anders Schack-Mulligen
|
411891c303
|
Java: Don't inherit methods from co-/contra-variant supertypes.
|
2018-11-13 14:56:22 +01:00 |
|
Max Schaefer
|
96989a1fd6
|
Merge pull request #427 from adityasharad/eclipse/remove-plugin-metadata
Eclipse plugins: Remove plugin metadata.
|
2018-11-13 13:12:49 +00:00 |
|
Aditya Sharad
|
bc06831d01
|
Merge rc/1.18 into master.
|
2018-11-13 10:55:08 +00:00 |
|
Felicity Chapman
|
fa8fd0513c
|
Update qhelp for queries with CWE tags
|
2018-11-12 18:00:17 +00:00 |
|
Aditya Sharad
|
271628c280
|
Version: Bump to 1.18.3 dev.
|
2018-11-12 14:55:26 +00:00 |
|
Aditya Sharad
|
761e5efd60
|
Merge master into next.
JavaScript semantic conflicts fixed by referring to the `LegacyLanguage` enum.
C++ conflicts fixed by accepting Qltest output.
|
2018-11-09 18:49:35 +00:00 |
|
Anders Schack-Mulligen
|
6f791bb530
|
Java: Account for extraction of calls to <obinit>.
|
2018-11-09 13:36:05 +01:00 |
|
yh-semmle
|
49fbc410a1
|
Merge pull request #414 from aschackmull/java/unreachable-ssa
Java: Don't construct nonsense SSA for unreachable code.
|
2018-11-07 18:30:46 -05:00 |
|
Aditya Sharad
|
ed49c623f1
|
Version: Bump to 1.18.2 release.
|
2018-11-07 14:36:40 +00:00 |
|
Aditya Sharad
|
194042348a
|
Eclipse plugins: Remove plugin metadata.
This is only needed to build QL for Eclipse, and will be moved into the internal Semmle repository.
|
2018-11-07 11:01:05 +00:00 |
|
Anders Schack-Mulligen
|
92f265844b
|
Java: Fix mixed tabs/spaces in qhelp examples.
|
2018-11-07 09:02:41 +01:00 |
|
Anders Schack-Mulligen
|
fa3fa33c51
|
Java: Don't construct nonsense SSA for unreachable code.
|
2018-11-06 16:43:08 +01:00 |
|
Aditya Sharad
|
553c2f5d34
|
Merge master into next.
As of 2846d80f1c.
|
2018-11-06 11:52:51 +00:00 |
|
Aditya Sharad
|
3483245870
|
Merge rc/1.18 into master.
As of 3291a30bf4.
|
2018-11-02 09:54:50 +00:00 |
|
Aditya Sharad
|
3291a30bf4
|
Version: Bump to 1.18.2 dev.
|
2018-11-01 18:46:56 +00:00 |
|
Anders Schack-Mulligen
|
41c89475fe
|
Java: Rerun autoformat.
|
2018-11-01 17:01:12 +01:00 |
|
Aditya Sharad
|
b896899f4c
|
Merge master into next.
master as of dc3c5a684c
Version numbers resolved in favour of `next`.
C++ expected output file updated to accept test output.
|
2018-10-31 10:47:31 +00:00 |
|
Anders Schack-Mulligen
|
c3f71c2d42
|
Java: Change main ZipSlip location to the source.
|
2018-10-31 11:38:28 +01:00 |
|
Anders Schack-Mulligen
|
36f41a3e16
|
Java: Fix performance issue, and add Path.resolve as taint step.
|
2018-10-31 11:38:27 +01:00 |
|
Anders Schack-Mulligen
|
bf6b7c4734
|
Java: Add ZipSlip query.
|
2018-10-31 11:38:27 +01:00 |
|
Aditya Sharad
|
256b829201
|
Merge rc/1.18 into master.
|
2018-10-30 11:21:50 +00:00 |
|
Aditya Sharad
|
5e7b7818df
|
Version: Bump to 1.18.1 release.
|
2018-10-29 18:02:58 +00:00 |
|
semmle-qlci
|
7b84f5b1fd
|
Merge pull request #372 from aschackmull/java/rangeanalysis-array-phinodes
Approved by yh-semmle
|
2018-10-29 13:02:58 +00:00 |
|
semmle-qlci
|
c2e7627f61
|
Merge pull request #351 from nystrom/master
Approved by pavgust
|
2018-10-26 19:09:02 +01:00 |
|
Anders Schack-Mulligen
|
3d81328c41
|
Java: Improve array length bounds on array phi nodes that may be null.
|
2018-10-26 11:18:31 +02:00 |
|
Anders Schack-Mulligen
|
4227cdb423
|
Java: Tweak query description.
|
2018-10-26 10:50:06 +02:00 |
|
semmle-qlci
|
cbc2d9e257
|
Merge pull request #361 from aschackmull/java/springweb-servlet-sources
Approved by yh-semmle
|
2018-10-26 02:06:11 +01:00 |
|
semmle-qlci
|
905911014d
|
Merge pull request #358 from aschackmull/java/sql-sinks
Approved by yh-semmle
|
2018-10-26 01:42:37 +01:00 |
|
Aditya Sharad
|
56ee5ff99a
|
Merge master into next.
`master` up to and including cfe0b8803a.
|
2018-10-25 15:32:47 +01:00 |
|
Anders Schack-Mulligen
|
42e659c645
|
Java: Minor fixups.
|
2018-10-25 14:30:40 +02:00 |
|
Anders Schack-Mulligen
|
1188e18837
|
Java: Whitelist Cookie::getName for HTTP response splitting.
|
2018-10-25 12:02:33 +02:00 |
|
Nate Nystrom
|
d228bd0b13
|
Fixed compilation error
|
2018-10-24 15:50:00 +02:00 |
|
Nate Nystrom
|
d04fde7157
|
Fixed compilation error.
|
2018-10-24 15:27:23 +02:00 |
|
Anders Schack-Mulligen
|
1d716ae461
|
Java: Add remote user input sources for Spring servlets.
|
2018-10-24 15:00:15 +02:00 |
|
Anders Schack-Mulligen
|
263de5219a
|
Java: Add additional SQL injection sinks.
|
2018-10-24 13:58:21 +02:00 |
|
Nate Nystrom
|
e174ca6ed8
|
Query for uncaught NumberFormatException
|
2018-10-23 19:03:15 +02:00 |
|
semmle-qlci
|
c78f3f8edf
|
Merge pull request #336 from aschackmull/java/dataflow-cleanup
Approved by yh-semmle
|
2018-10-20 03:43:49 +01:00 |
|
semmle-qlci
|
465a55f8ac
|
Merge pull request #333 from aschackmull/java/useless-comp-concurrent
Approved by yh-semmle
|
2018-10-20 01:37:13 +01:00 |
|
Anders Schack-Mulligen
|
0b46ffa7d7
|
Java/CPP: Sync files.
|
2018-10-18 15:10:23 +02:00 |
|
Anders Schack-Mulligen
|
bf58b6c9ab
|
Java: Remove self-ref tracking; improve AccessPath.toString on numbers.
|
2018-10-18 15:05:04 +02:00 |
|
Anders Schack-Mulligen
|
187918396c
|
Java: Autoformat the last 5 files (RangeAnalysis).
|
2018-10-18 10:03:08 +02:00 |
|
Anders Schack-Mulligen
|
0c37ea876d
|
Java: Fix FPs for concurrent modification checks.
|
2018-10-18 09:44:26 +02:00 |
|
semmle-qlci
|
3af91d5d0a
|
Merge pull request #301 from aschackmull/java/modulus-analysis
Approved by yh-semmle
|
2018-10-18 08:24:32 +01:00 |
|
Anders Schack-Mulligen
|
3dc9071a44
|
Java: Add missing word in deprecation comments.
|
2018-10-17 15:59:52 +02:00 |
|
Tom Hvitved
|
58a0815033
|
Merge remote-tracking branch 'upstream/master' into mergeback-2018-10-17
|
2018-10-17 13:24:37 +02:00 |
|