Erik Krogh Kristensen
|
b20e8520f6
|
add default message if not pretty printed call can be created
|
2020-02-24 14:52:08 +01:00 |
|
semmle-qlci
|
317356e591
|
Merge pull request #2898 from asger-semmle/js/prototype-pollution-isobject-sanitizers
Approved by erik-krogh
|
2020-02-24 13:35:32 +00:00 |
|
Erik Krogh Kristensen
|
a779ae58a8
|
add qhelp
|
2020-02-24 14:03:41 +01:00 |
|
Erik Krogh Kristensen
|
fb94af9764
|
remove the last dependency on PrettyPrinting
|
2020-02-24 13:18:15 +01:00 |
|
Erik Krogh Kristensen
|
051de247b0
|
change regexpMatch to regexpFind
|
2020-02-24 13:11:30 +01:00 |
|
Erik Krogh Kristensen
|
a768e937f0
|
complete qldoc
|
2020-02-24 13:08:50 +01:00 |
|
Erik Krogh Kristensen
|
473787a426
|
refactor the getOptionsArg predicate into the SystemCommandExecution class
|
2020-02-24 12:59:20 +01:00 |
|
Asger Feldthaus
|
01309d7c2e
|
TS: Add test for named re-export and exportsAs
|
2020-02-24 11:40:28 +00:00 |
|
Asger Feldthaus
|
78954489fb
|
TS: Fix expected output
|
2020-02-24 11:40:28 +00:00 |
|
Asger Feldthaus
|
4e1bd9056c
|
TS: Fix javadoc
|
2020-02-24 11:40:28 +00:00 |
|
Asger Feldthaus
|
18974bad1c
|
TS: Add upgrade script and stats
|
2020-02-24 11:40:27 +00:00 |
|
Asger Feldthaus
|
47673c6e21
|
TS: Disable export analysis for type-only exports
|
2020-02-24 11:40:27 +00:00 |
|
Asger Feldthaus
|
16c909b433
|
TS: Add test case for import type * as ns
|
2020-02-24 11:40:27 +00:00 |
|
Asger Feldthaus
|
260b243c28
|
TS: Add test case to DeclBeforeUse
|
2020-02-24 11:40:27 +00:00 |
|
Asger Feldthaus
|
8d58aad0f2
|
TS: Support type-only import/export
|
2020-02-24 11:40:27 +00:00 |
|
Asger Feldthaus
|
0351f0b775
|
TS: Add test and documentation for private fields
|
2020-02-24 11:40:27 +00:00 |
|
Asger Feldthaus
|
8531c113a1
|
TS: Fix imports
|
2020-02-24 11:40:27 +00:00 |
|
Asger Feldthaus
|
9b52acc62a
|
TS: Handle export * as ns
|
2020-02-24 11:40:27 +00:00 |
|
Asger Feldthaus
|
7f939fe1e4
|
TS: Update to TypeScript 3.8.2
|
2020-02-24 11:40:27 +00:00 |
|
semmle-qlci
|
94aa77748d
|
Merge pull request #2810 from erik-krogh/CVE74
Approved by asgerf
|
2020-02-24 11:32:42 +00:00 |
|
Asger Feldthaus
|
f923b24bc5
|
JS: Fix test
|
2020-02-24 11:19:23 +00:00 |
|
Erik Krogh Kristensen
|
75c1852ee4
|
doc changes from review
Co-Authored-By: Esben Sparre Andreasen <esbena@github.com>
|
2020-02-24 11:58:59 +01:00 |
|
Erik Krogh Kristensen
|
44db0f4e5d
|
better printing of the options arg
|
2020-02-21 15:39:49 +01:00 |
|
Asger Feldthaus
|
d1df251b92
|
JS: Proto pollution: Add is-plain-object sanitizer
|
2020-02-21 14:38:33 +00:00 |
|
Erik Krogh Kristensen
|
90e5671d98
|
Merge branch 'master' of git.semmle.com:Semmle/ql into CVE481
|
2020-02-21 15:25:07 +01:00 |
|
Asger Feldthaus
|
a673539c98
|
JS: Update expected output
|
2020-02-21 13:51:23 +00:00 |
|
Asger Feldthaus
|
b780bc4d59
|
JS: Also track into callbacks
|
2020-02-21 13:51:22 +00:00 |
|
Asger Feldthaus
|
e8e649102f
|
JS: Also propagate out of returns
|
2020-02-21 13:51:22 +00:00 |
|
Asger Feldthaus
|
8c36b999cc
|
JS: Track flow into calls to bound functions
|
2020-02-21 13:51:20 +00:00 |
|
semmle-qlci
|
ee5cf95f5b
|
Merge pull request #2892 from asger-semmle/js/field-methods
Approved by esbena
|
2020-02-21 13:49:42 +00:00 |
|
semmle-qlci
|
e163d8d8c8
|
Merge pull request #2796 from asger-semmle/js/partial-invoke-receiver
Approved by esbena
|
2020-02-21 13:48:43 +00:00 |
|
Erik Krogh Kristensen
|
75410e5760
|
big refactor of UselessUseOfCal
|
2020-02-21 14:26:42 +01:00 |
|
semmle-qlci
|
382e4bc06a
|
Merge pull request #2895 from max-schaefer/js/improve-param-qldoc
Approved by asgerf
|
2020-02-21 12:01:02 +00:00 |
|
Max Schaefer
|
75495d7aad
|
Update javascript/ql/src/semmle/javascript/Variables.qll
Co-Authored-By: Asger F <asgerf@github.com>
|
2020-02-21 10:06:32 +00:00 |
|
Erik Krogh Kristensen
|
6ea14532ab
|
small changes based on review
|
2020-02-21 10:27:57 +01:00 |
|
Max Schaefer
|
fc4afe6eb2
|
JavaScript: Improve qldoc for Parameter to clarify that it also contains catch-clause parameters.
|
2020-02-21 09:14:00 +00:00 |
|
semmle-qlci
|
2df3fe8f36
|
Merge pull request #2883 from asger-semmle/typescript-3.7.5
Approved by erik-krogh
|
2020-02-20 15:59:36 +00:00 |
|
Erik Krogh Kristensen
|
924272a7a5
|
insert placeholder qhelp
|
2020-02-20 14:35:26 +01:00 |
|
Erik Krogh Kristensen
|
b2ccec28e0
|
require the file to be non-empty
|
2020-02-20 14:34:50 +01:00 |
|
Erik Krogh Kristensen
|
b1cbfce50b
|
use SystemCommandExecution and a few small fixes
|
2020-02-20 14:17:37 +01:00 |
|
Erik Krogh Kristensen
|
03e295ef11
|
Merge branch 'master' of git.semmle.com:Semmle/ql into CVE74
|
2020-02-20 12:19:32 +01:00 |
|
semmle-qlci
|
f6af5da7f7
|
Merge pull request #2778 from erik-krogh/FalsySanitizer
Approved by asgerf
|
2020-02-20 11:17:03 +00:00 |
|
Erik Krogh Kristensen
|
63036aa444
|
Merge branch 'master' of git.semmle.com:Semmle/ql into CVE74
|
2020-02-20 12:09:06 +01:00 |
|
semmle-qlci
|
8b277f7226
|
Merge pull request #2868 from asger-semmle/js/missing-await-void
Approved by max-schaefer
|
2020-02-20 10:56:47 +00:00 |
|
Asger Feldthaus
|
6448acfa88
|
TS: Depend on TypeScript 3.7.5
|
2020-02-20 10:53:17 +00:00 |
|
Erik Krogh Kristensen
|
12c0291dde
|
require that an options object has a known set of properties
|
2020-02-20 11:35:11 +01:00 |
|
Erik Krogh Kristensen
|
b5ef45e6c2
|
add isSync predicate to SystemCommandExecution
|
2020-02-20 11:30:23 +01:00 |
|
Erik Krogh Kristensen
|
a193cb110e
|
support arrow functions in the callbacks
|
2020-02-20 11:13:39 +01:00 |
|
Erik Krogh Kristensen
|
558beb7255
|
simplify the output file argument
|
2020-02-20 10:57:33 +01:00 |
|
semmle-qlci
|
091c6c063c
|
Merge pull request #2856 from esbena/js/fix-RegExp-getPredecessor-getSuccessor
Approved by max-schaefer
|
2020-02-20 09:50:52 +00:00 |
|