github-actions[bot]
|
ee9980b31c
|
Release preparation for version 2.9.2
|
2022-05-12 10:17:28 +00:00 |
|
yoff
|
b6605bc330
|
Merge pull request #8634 from RasmusWL/promote-xxe
Python: Promote XXE and XML-bomb queries
|
2022-05-09 21:54:55 +02:00 |
|
Mathias Vorreiter Pedersen
|
176e40f139
|
Merge pull request #9052 from github/post-release-prep/codeql-cli-2.9.1
Post-release preparation for codeql-cli-2.9.1
|
2022-05-06 13:15:17 +01:00 |
|
yoff
|
56ed68b3eb
|
Merge pull request #9001 from RasmusWL/files-refactoring
Python: Flask: Improve `request.files` modeing
|
2022-05-03 12:19:55 +02:00 |
|
Rasmus Wriedt Larsen
|
7e1be3172e
|
Python: Add change-note
|
2022-05-02 14:24:13 +02:00 |
|
yoff
|
1d44694280
|
Merge pull request #8732 from RasmusWL/dataflow-imports
Python: Don't re-export `python` under `DataFlow::`
|
2022-05-02 12:08:28 +02:00 |
|
Rasmus Wriedt Larsen
|
5f01fc24e4
|
Merge branch 'main' into promote-xxe
|
2022-05-02 11:25:55 +02:00 |
|
Jeroen Ketema
|
4a648f3c89
|
Fix change note items
|
2022-04-28 14:14:19 +02:00 |
|
github-actions[bot]
|
8e4cf190e9
|
Release preparation for version 2.9.1
|
2022-04-28 11:59:05 +00:00 |
|
Mathias Vorreiter Pedersen
|
aca4c8727f
|
Merge pull request #8802 from github/post-release-prep/codeql-cli-2.9.0
Post-release preparation for codeql-cli-2.9.0
|
2022-04-25 22:52:55 +01:00 |
|
Tom Hvitved
|
cf0a1e748a
|
Add change notes
|
2022-04-25 09:17:40 +02:00 |
|
Dave Bartolomeo
|
fb710cd944
|
Fix formatting in change log
|
2022-04-21 10:59:03 -04:00 |
|
github-actions[bot]
|
eeaf233c29
|
Release preparation for version 2.9.0
|
2022-04-21 14:49:00 +00:00 |
|
Rasmus Wriedt Larsen
|
bb6969a175
|
Merge branch 'main' into promote-xxe
|
2022-04-20 13:42:02 +02:00 |
|
Rasmus Wriedt Larsen
|
888a38c060
|
Python: Add change-note
|
2022-04-20 11:46:09 +02:00 |
|
Anders Schack-Mulligen
|
48fbbf2531
|
Dataflow: Add change notes.
|
2022-04-19 15:29:35 +02:00 |
|
Edoardo Pirovano
|
ce82c54b94
|
Merge branch 'main' into edoardo/3.5-mergeback
|
2022-04-08 15:30:58 +01:00 |
|
Rasmus Wriedt Larsen
|
23637fd691
|
Merge branch 'main' into promote-xxe
|
2022-04-06 12:56:31 +02:00 |
|
Rasmus Wriedt Larsen
|
4d2a3b38d2
|
Merge pull request #8511 from RasmusWL/use-query-suffix
Python: Use `Query.qll` suffix for dataflow configuration definitions
|
2022-04-06 11:59:29 +02:00 |
|
Sebastian Bauersfeld
|
504e7e4a55
|
Update python/ql/lib/change-notes/2022-03-30-flask-recognize-body-param.md
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2022-04-01 18:41:27 +07:00 |
|
github-actions[bot]
|
ee746d20df
|
Release preparation for version 2.8.5
|
2022-04-01 10:39:31 +00:00 |
|
Rasmus Wriedt Larsen
|
769f5691d0
|
Python: Add taint for StringIO and BytesIO
|
2022-03-31 09:52:54 +02:00 |
|
Sebastian Bauersfeld
|
a3c3a7fe0d
|
Python: Identify alternative body argument in invocations of Response constructor.
|
2022-03-30 19:34:54 +07:00 |
|
Rasmus Wriedt Larsen
|
6bd9d82610
|
Merge pull request #8061 from RasmusWL/orm
Python: Add data-flow through Django ORM models
|
2022-03-22 11:14:08 +01:00 |
|
Rasmus Wriedt Larsen
|
978ef05571
|
Python: Add change-note
|
2022-03-21 16:18:40 +01:00 |
|
github-actions[bot]
|
dedc8c2254
|
Release preparation for version 2.8.4
|
2022-03-21 13:25:49 +00:00 |
|
Rasmus Wriedt Larsen
|
ae1ba11d57
|
Merge branch 'main' into orm
|
2022-03-16 11:23:14 +01:00 |
|
Jeroen Ketema
|
9a0e94f389
|
Add flow state versions of isBarrierIn, isBarrierOut, and isBarrierGuard
|
2022-03-15 11:55:34 +01:00 |
|
Jonas Jensen
|
d89c52f4b0
|
Merge pull request #8403 from erik-krogh/noUpper
Rename all upper-case variables, and all lower-case modules
|
2022-03-15 09:00:37 +01:00 |
|
Arthur Baars
|
6a74e761c8
|
Merge pull request #8398 from github/post-release-prep/codeql-cli-2.8.3
Post-release preparation for codeql-cli-2.8.3
|
2022-03-14 21:05:09 +01:00 |
|
Erik Krogh Kristensen
|
c93f29b1a1
|
fix typo in change note
Co-authored-by: Nick Rolfe <nickrolfe@github.com>
|
2022-03-14 16:03:45 +01:00 |
|
Erik Krogh Kristensen
|
a4525bbb29
|
add change-note
|
2022-03-14 12:22:39 +01:00 |
|
Jeroen Ketema
|
4c2081b7fc
|
Merge pull request #8401 from jketema/taint-flow
Extend taint tracking interface with flow states
|
2022-03-14 12:06:10 +01:00 |
|
Jeroen Ketema
|
c832b21fbe
|
Add change notes for changes to the taint tracking library
|
2022-03-14 10:38:48 +01:00 |
|
Erik Krogh Kristensen
|
2e2970128e
|
fix typo in change-note
|
2022-03-11 13:16:34 +01:00 |
|
Erik Krogh Kristensen
|
1a275a32f7
|
add change-notes
|
2022-03-11 11:18:14 +01:00 |
|
github-actions[bot]
|
6b194bc55f
|
Release preparation for version 2.8.3
|
2022-03-10 19:43:58 +00:00 |
|
Erik Krogh Kristensen
|
9c4fcf4c6d
|
fix typo in change-note
Co-authored-by: Stephan Brandauer <kaeluka@github.com>
|
2022-03-09 18:28:13 +01:00 |
|
Erik Krogh Kristensen
|
5312e4a8b5
|
add change note that all old deprecations were deleted
|
2022-03-09 18:28:11 +01:00 |
|
Rasmus Wriedt Larsen
|
f620e2599d
|
Merge branch 'main' into py/add-ssrf-sinks
|
2022-03-04 11:50:12 +01:00 |
|
Rasmus Wriedt Larsen
|
e47f726e74
|
Python: Add change-note
|
2022-03-04 11:48:17 +01:00 |
|
Rasmus Wriedt Larsen
|
cd58c12bbe
|
Merge branch 'main' into orm
|
2022-03-01 12:01:54 +01:00 |
|
Tamás Vajk
|
94cb5c2be4
|
Merge pull request #8296 from github/post-release-prep/codeql-cli-2.8.2
Post-release preparation for codeql-cli-2.8.2
|
2022-03-01 11:57:36 +01:00 |
|
Arthur Baars
|
5ce6b847d1
|
Merge pull request #8166 from aibaars/regex-char-sequence-1
Ruby/Python: regex parser: group sequences of 'normal' characters
|
2022-02-28 17:47:53 +01:00 |
|
Rasmus Wriedt Larsen
|
d7ff00e615
|
Python: Add change-note
|
2022-02-28 16:38:40 +01:00 |
|
yoff
|
d953382df9
|
Merge pull request #7807 from RasmusWL/dataflow-improvements
Python: Dataflow improvements
|
2022-02-28 16:24:00 +01:00 |
|
Arthur Baars
|
0c23f5815f
|
Add change note
|
2022-02-25 18:43:43 +01:00 |
|
yoff
|
8b926f6859
|
Merge pull request #7873 from RasmusWL/fix-attribute-taint
Python: Fix attribute taint
|
2022-02-25 15:02:24 +01:00 |
|
github-actions[bot]
|
20fe22c8c8
|
Release preparation for version 2.8.2
|
2022-02-24 14:57:08 +00:00 |
|
Rasmus Wriedt Larsen
|
d2cd77aefb
|
Merge branch 'main' into dataflow-improvements
|
2022-02-21 14:49:40 +01:00 |
|