Ed Minnix
|
91b3533035
|
Add SqlTaintedLocalQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
a0f7575b34
|
Add StackTraceExposureQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
aff299eafd
|
Add ExecTaintedLocal
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
b39d5088de
|
Add InsecureCookieQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
be24b29e7a
|
Add UrlRedirectLocalQuery.qll
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
0249187282
|
Add ExternallyControlledFormatStringLocalQuery.qll
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
5834e4ac52
|
Add UrlRedirectQuery.qll
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
cc22a7d4b4
|
Add XssLocalQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
c2b6a3f4e0
|
Add XPathInjectionQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
c15ce27957
|
Add SqlConcatenatedQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
1af6d5f7b3
|
Add TaintedPermissionsCheckQuery
|
2023-05-04 10:14:59 -04:00 |
|
Kasper Svendsen
|
4035b16ac1
|
Merge pull request #13008 from kaspersv/kaspersv/explicit-this-receivers-shared1
Java, C#: Make implicit this receivers explicit
|
2023-05-04 15:38:45 +02:00 |
|
Anders Schack-Mulligen
|
1185bfc90f
|
Merge pull request #12986 from aschackmull/java/mapvalue-precision
Java: Force high precision for MapValueContent.
|
2023-05-04 14:52:41 +02:00 |
|
Anders Schack-Mulligen
|
3b004b06b0
|
Java: Minor perf fix for typePrefixContainsAux1.
|
2023-05-04 14:21:36 +02:00 |
|
Mathias Vorreiter Pedersen
|
77001a070b
|
Merge branch 'main' into identity-consistency-check
|
2023-05-03 22:01:06 +01:00 |
|
Jami Cogswell
|
2224c5d9be
|
Java: remove url-open-stream kind from getInvalidModelKind
|
2023-05-03 10:08:50 -04:00 |
|
Kasper Svendsen
|
081085e128
|
Java: Make implicit this receivers explicit
|
2023-05-03 13:37:35 +02:00 |
|
Kasper Svendsen
|
e071a25653
|
Java, C#: Make implicit this receivers explicit
|
2023-05-03 13:09:00 +02:00 |
|
Anders Schack-Mulligen
|
97cd3b8576
|
Java: Force high precision for MapValueContent.
|
2023-05-02 11:19:21 +02:00 |
|
Anders Schack-Mulligen
|
ca09649679
|
Dataflow: Forward hasLocationInfo.
|
2023-05-02 10:48:32 +02:00 |
|
Anders Schack-Mulligen
|
5927bb2030
|
Dataflow: Replace "extends Node" with "instanceof Node".
|
2023-05-02 09:48:34 +02:00 |
|
Anders Schack-Mulligen
|
6c8cb0dc5e
|
Merge pull request #12930 from aschackmull/dataflow/split-typedcontent
Dataflow: Refactor access paths to split TypedContent into an explicit pair
|
2023-05-01 14:58:15 +02:00 |
|
Mathias Vorreiter Pedersen
|
e506f638fc
|
DataFlow: Sync identical files.
|
2023-04-27 18:40:33 +01:00 |
|
Anders Schack-Mulligen
|
9df2ee00d6
|
Java: Add SrcCallable.isImplicitlyPublic convenience predicate.
|
2023-04-27 15:20:49 +02:00 |
|
Anders Schack-Mulligen
|
71ae0909d8
|
Dataflow: Enforce type pruning in all forward stages.
|
2023-04-27 14:55:26 +02:00 |
|
Anders Schack-Mulligen
|
a761eea2dc
|
Dataflow: Autoformat
|
2023-04-27 14:52:25 +02:00 |
|
Anders Schack-Mulligen
|
4f2d2361a4
|
Dataflow: Eliminate TypedContent.
|
2023-04-27 14:52:25 +02:00 |
|
Anders Schack-Mulligen
|
5373b4d466
|
Dataflow: Remove superfluous predicates.
|
2023-04-27 14:52:25 +02:00 |
|
Anders Schack-Mulligen
|
b534e7b6d5
|
Dataflow: Remove superfluous columns
|
2023-04-27 14:52:25 +02:00 |
|
Anders Schack-Mulligen
|
a2fa97ac22
|
Dataflow: Replace TypedContent with Content in access paths.
|
2023-04-27 14:52:25 +02:00 |
|
Anders Schack-Mulligen
|
123534a676
|
Dataflow: Eliminate front type in AccessPathFront.
|
2023-04-27 14:52:25 +02:00 |
|
Anders Schack-Mulligen
|
ff3e45e1ba
|
Dataflow: Eliminate TypedContentApprox.
|
2023-04-27 14:52:25 +02:00 |
|
Anders Schack-Mulligen
|
748bcba0ae
|
Dataflow: Eliminate now-redundant type in nil accesspath approximations.
|
2023-04-27 14:52:25 +02:00 |
|
Anders Schack-Mulligen
|
95b95e5c27
|
Dataflow: Duplicate type info for AccessPathApprox tails.
|
2023-04-27 14:52:24 +02:00 |
|
Anders Schack-Mulligen
|
52f50b8d9d
|
Dataflow: Replace AccessPath push/pop with isCons.
|
2023-04-27 14:52:24 +02:00 |
|
Anders Schack-Mulligen
|
142479eeb7
|
Dataflow: Duplicate type info for AccessPath tails.
|
2023-04-27 14:52:24 +02:00 |
|
Anders Schack-Mulligen
|
69202d2dae
|
Dataflow: Include type in post-stage-5 tail relation.
|
2023-04-27 14:52:24 +02:00 |
|
Anders Schack-Mulligen
|
933d2fbb9f
|
Dataflow: Replace RevPartialAccessPath with the now identical PartialAccessPath.
|
2023-04-27 14:52:24 +02:00 |
|
Anders Schack-Mulligen
|
2cf58fccf7
|
Dataflow: Remove type from PartialAccessPath.
|
2023-04-27 14:52:24 +02:00 |
|
Anders Schack-Mulligen
|
e5d36ff461
|
Dataflow: Add type to stage 2-5 summary ctx.
|
2023-04-27 14:52:24 +02:00 |
|
Anders Schack-Mulligen
|
77b09f3660
|
Dataflow: Add type to partial flow summary context
|
2023-04-27 14:52:24 +02:00 |
|
Anders Schack-Mulligen
|
11c05257d4
|
Dataflow: Duplicate accesspath type info in partial flow.
|
2023-04-27 14:52:20 +02:00 |
|
Anders Schack-Mulligen
|
fd36304da2
|
Dataflow: Add type to PathNode.toString
|
2023-04-27 14:50:55 +02:00 |
|
Anders Schack-Mulligen
|
5a027b95bd
|
Dataflow: Duplicate accesspath type info in PathNode and pathStep.
|
2023-04-27 14:33:33 +02:00 |
|
Anders Schack-Mulligen
|
209d9143be
|
Dataflow: Add type column to filter predicate
|
2023-04-27 14:33:33 +02:00 |
|
Anders Schack-Mulligen
|
c79daf0116
|
Dataflow: Duplicate accesspath type info of the tail in cons relations.
|
2023-04-27 14:33:33 +02:00 |
|
Anders Schack-Mulligen
|
b84b1a46d6
|
Dataflow: Duplicate accesspath type info as separate column.
|
2023-04-27 14:33:33 +02:00 |
|
Anders Schack-Mulligen
|
cda26ba7c0
|
Dataflow: Split TypedContent in store relation.
|
2023-04-27 14:33:32 +02:00 |
|
Anders Schack-Mulligen
|
32a738b082
|
Dataflow: Add type to PathNode.toString.
|
2023-04-26 14:43:53 +02:00 |
|
Tony Torralba
|
1e66a544fd
|
Promote exxperimental XXE sinks
|
2023-04-26 12:11:48 +02:00 |
|