Michael B. Gale
|
e5fa4a6dca
|
Merge pull request #20812 from github/release-prep/2.23.5
Release preparation for version 2.23.5
codeql-cli/v2.23.5
|
2025-11-11 11:46:37 +00:00 |
|
Paolo Tranquilli
|
99baf98897
|
Fix build-ripunzip.yml
|
2025-11-11 12:46:28 +01:00 |
|
Anders Schack-Mulligen
|
0a4406dec9
|
Guards: Push forex-range constraint in.
|
2025-11-11 12:45:46 +01:00 |
|
Paolo Tranquilli
|
82435218dc
|
Javascript: fix compilation error after scripted replacement
|
2025-11-11 12:44:33 +01:00 |
|
Paolo Tranquilli
|
9d51932124
|
Merge branch 'main' into redsun82/update-rules_java
|
2025-11-11 12:43:05 +01:00 |
|
Michael B. Gale
|
b4fed5bf58
|
Revert C++ range analysis change note
|
2025-11-11 11:38:54 +00:00 |
|
Michael B. Gale
|
ac9a29701e
|
C#: Minor changelog improvements
|
2025-11-11 11:38:20 +00:00 |
|
Napalys Klicius
|
d122534398
|
Merge pull request #20671 from github/napalys/adjust_query_severity
Adjust query severity ratings
|
2025-11-11 12:37:31 +01:00 |
|
github-actions[bot]
|
e4f25c9a13
|
Release preparation for version 2.23.5
|
2025-11-11 11:33:33 +00:00 |
|
Paolo Tranquilli
|
ff62c65cdf
|
Javascript: avoid null pointer exception on boolean values
|
2025-11-11 12:11:49 +01:00 |
|
Paolo Tranquilli
|
47f2617b4d
|
Use other compression method for ripunzip
|
2025-11-11 12:07:19 +01:00 |
|
Paolo Tranquilli
|
295744eb36
|
Set permissions
|
2025-11-11 12:00:30 +01:00 |
|
Paolo Tranquilli
|
29a2f96cc7
|
Merge branch 'main' into redsun82/ripunzip
|
2025-11-11 11:57:29 +01:00 |
|
Paolo Tranquilli
|
6ef314ed03
|
Javascript: fix errors from upcoming rules_java update
|
2025-11-11 11:53:07 +01:00 |
|
Geoffrey White
|
109abddc36
|
Apply suggestions from code review
Co-authored-by: Simon Friis Vindum <paldepind@github.com>
|
2025-11-11 09:32:14 +00:00 |
|
Geoffrey White
|
8624f9c660
|
Merge pull request #20749 from github/copilot/add-secure-cookie-test-cases
Add test coverage for actix-web, poem, and http-types cookie secure attribute
|
2025-11-11 09:26:26 +00:00 |
|
Michael B. Gale
|
5b1e651803
|
Merge pull request #20803 from github/revert-20778-release-prep/2.23.4
Revert "Release preparation for version 2.23.4"
|
2025-11-11 00:06:17 +00:00 |
|
Michael B. Gale
|
8ba29a7821
|
Revert "Release preparation for version 2.23.4"
|
2025-11-10 17:13:28 +00:00 |
|
Joe Farebrother
|
eda23902ba
|
Merge pull request #20692 from joefarebrother/csharp-secure-cookie-promote
C#: Promote insecure cookie and httponly cookie queries
|
2025-11-10 15:02:45 +00:00 |
|
Paolo Tranquilli
|
02e696d9cc
|
Update .github/workflows/build-ripunzip.yml
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2025-11-10 15:58:43 +01:00 |
|
Michael Nebel
|
0541dccc78
|
C#: Add discarding for ASP elements.
|
2025-11-10 15:44:17 +01:00 |
|
Michael Nebel
|
3492811cda
|
C#: Add XML overlay tests.
|
2025-11-10 15:38:29 +01:00 |
|
Michael Nebel
|
d6b7424e2c
|
C#: Add the same strategy in as in Java for XML element discarding.
|
2025-11-10 15:38:26 +01:00 |
|
Joe Farebrother
|
c9a559a6d8
|
Restrict Append calls to string arguments
|
2025-11-10 14:14:06 +00:00 |
|
Joe Farebrother
|
b813c13462
|
Restrict sinks to fix performance
|
2025-11-10 14:14:01 +00:00 |
|
Joe Farebrother
|
7d5388fb68
|
Update integration tests
|
2025-11-10 14:13:56 +00:00 |
|
Joe Farebrother
|
544446bb81
|
Minor comment update
|
2025-11-10 14:13:51 +00:00 |
|
Joe Farebrother
|
0a085dccbe
|
Fix qhelp
|
2025-11-10 14:13:46 +00:00 |
|
Joe Farebrother
|
d29fc9d2d0
|
Add changenote
|
2025-11-10 14:13:41 +00:00 |
|
Joe Farebrother
|
d8eeae781b
|
Add additional test case for httponly cookies set to true
|
2025-11-10 14:13:36 +00:00 |
|
Paolo Tranquilli
|
a6fda6ba73
|
CI: make build-ripunzip.yml auto-create update PR
|
2025-11-10 15:13:35 +01:00 |
|
Joe Farebrother
|
c734e74c76
|
Update qhelp
|
2025-11-10 14:13:31 +00:00 |
|
Joe Farebrother
|
cdd1edd53b
|
Remove experimental versions
|
2025-11-10 14:13:26 +00:00 |
|
Joe Farebrother
|
6ba7ece2f0
|
Add httponly tests for aspnet core + fixes
|
2025-11-10 14:13:19 +00:00 |
|
Joe Farebrother
|
ae0b997c31
|
Add system.web tests for httponly cookie
|
2025-11-10 14:13:14 +00:00 |
|
Joe Farebrother
|
a9b97f7065
|
Add tests for insecure cookie using system.web
|
2025-11-10 14:13:09 +00:00 |
|
Joe Farebrother
|
bb010fee6b
|
Add tests for secure cookie using aspnetcore
|
2025-11-10 14:13:04 +00:00 |
|
Joe Farebrother
|
3cdfa8e0ac
|
Update comments and names
|
2025-11-10 14:12:57 +00:00 |
|
Joe Farebrother
|
a87a03cfa8
|
Move to main query pack
|
2025-11-10 14:12:48 +00:00 |
|
Joe Farebrother
|
71ad5a340f
|
Refactor httponly cookie query
|
2025-11-10 14:12:43 +00:00 |
|
Joe Farebrother
|
a1864edcb6
|
Presere behaviour for insecure cookie constructor
|
2025-11-10 14:12:36 +00:00 |
|
Joe Farebrother
|
d3ea6758c3
|
Simplify checks for assignments to false to creation case
|
2025-11-10 14:12:30 +00:00 |
|
Joe Farebrother
|
7bb65fef1b
|
Refactor secure cookie query
|
2025-11-10 14:12:24 +00:00 |
|
Mathias Vorreiter Pedersen
|
fd8bf990f6
|
Merge pull request #20783 from MathiasVP/fix-cp-in-external-flow
C++: Fix cartesian-like join in `ExternalFlow.qll`
|
2025-11-10 13:40:34 +00:00 |
|
Michael Nebel
|
c44b74740e
|
C#: Minor code quality improvements.
|
2025-11-10 14:23:59 +01:00 |
|
Michael Nebel
|
0a16cf68de
|
C#: Do not require that comments and type locations are in source in test.
|
2025-11-10 13:53:41 +01:00 |
|
Geoffrey White
|
4b212239e1
|
Rust: Remove unnecessary .(BlockExpr).
|
2025-11-10 12:35:39 +00:00 |
|
Michael Nebel
|
43118ecccc
|
C#: The extraction of the TypeMentions for return type and explicit interface return type for methods have changed order.
|
2025-11-10 13:26:07 +01:00 |
|
Michael Nebel
|
ded1328103
|
C#: Do not extract comments when scaffolding.
|
2025-11-10 13:26:05 +01:00 |
|
Tom Hvitved
|
de367eaad6
|
Update rust/ql/lib/codeql/rust/elements/internal/ElementImpl.qll
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2025-11-10 12:42:28 +01:00 |
|