Max Schaefer
|
09cf8e8b01
|
Remove RequestHeaderAccess.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
bd8212c090
|
Remove RequestInputAccess.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
f106d186e4
|
Remove MultipartyRemoteFlow.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
e2c84407b4
|
Revert changes to Express::RequestInputAccess in c45d84f8f3 and 9cacfab7c6.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
67b15125c7
|
Revert changes to Express::RequestInputAccess in d84f1b47c2.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
caf763a969
|
Revert changes to Express::RequestInputAccess in ed48efe5b4.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
4f8f5048f3
|
Revert changes to Express::RequestInputAccess in 83f0514475.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
2366679d9b
|
Revert changes to Express::RequestInputAccess in e2fbf8a68c.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
66399c055e
|
Remove MicroBodyParserCall.
|
2021-04-19 15:04:21 +01:00 |
|
Max Schaefer
|
85c02a430e
|
Remove ServerRequestDataEvent.
|
2021-04-19 15:04:20 +01:00 |
|
Max Schaefer
|
29945b8ed0
|
Remove VueRouterFlowSource.
|
2021-04-19 15:04:20 +01:00 |
|
Max Schaefer
|
a8ef1bc32a
|
Remove ServerlessHandlerEventAsRemoteFlow.
|
2021-04-19 15:04:20 +01:00 |
|
Max Schaefer
|
0781a138af
|
Remove ReceivedItemAsRemoteFlow.
|
2021-04-19 15:04:20 +01:00 |
|
Max Schaefer
|
6fd67c4d8e
|
Remove ReactRouterSource.
|
2021-04-19 15:04:19 +01:00 |
|
Max Schaefer
|
89747ecf83
|
Revert changes to `PostMessageEventHandler in cb7de27.
|
2021-04-19 15:03:51 +01:00 |
|
Max Schaefer
|
c013e3f9c3
|
Remove NodeJSNetServerItemAsRemoteFlow.
|
2021-04-19 15:03:51 +01:00 |
|
Max Schaefer
|
3b14b27635
|
Remove NextParams.
|
2021-04-19 15:03:51 +01:00 |
|
Max Schaefer
|
2ae32be934
|
Revert changes to ClientRequestData from 0b55aed626.
|
2021-04-19 15:03:51 +01:00 |
|
Max Schaefer
|
6647f6b9c4
|
Remove FormidableRemoteFlow.
|
2021-04-19 15:03:51 +01:00 |
|
Max Schaefer
|
41ceb291de
|
Remove BusBoyRemoteFlow.
|
2021-04-19 15:03:51 +01:00 |
|
Max Schaefer
|
615418d2e3
|
Remove AngularSource.
|
2021-04-19 15:03:49 +01:00 |
|
Max Schaefer
|
0ba76f7d0e
|
Revert "JS: Move $() sink into separate dataflow config"
This reverts commit 50a015c73e.
|
2021-04-19 15:03:11 +01:00 |
|
Max Schaefer
|
d97a10ef8a
|
Revert "JS: Address review comments"
This reverts commit c91cdb5194.
|
2021-04-19 14:57:18 +01:00 |
|
CodeQL CI
|
6fd4a8afff
|
Merge pull request #5567 from asgerf/js/sql-models
Approved by esbena
|
2021-04-09 07:11:10 -07:00 |
|
CodeQL CI
|
be2fe6e171
|
Merge pull request #5630 from erik-krogh/urlStep
Approved by esbena
|
2021-04-09 07:05:43 -07:00 |
|
CodeQL CI
|
8d2768b2ce
|
Merge pull request #5634 from erik-krogh/fileSource
Approved by asgerf
|
2021-04-09 07:04:42 -07:00 |
|
Erik Krogh Kristensen
|
595bdedb22
|
rename predicate to getStem, and update regexp
|
2021-04-09 13:07:54 +02:00 |
|
CodeQL CI
|
652e8b4872
|
Merge pull request #5586 from asgerf/js/tsconfig-file-inclusion-handling
Approved by esbena
|
2021-04-09 02:50:51 -07:00 |
|
CodeQL CI
|
ad267404c9
|
Merge pull request #5137 from asgerf/js/redux-less
Approved by erik-krogh
|
2021-04-09 01:24:19 -07:00 |
|
Asger Feldthaus
|
7d300b53d7
|
JS: Autoformat
|
2021-04-08 15:06:48 +01:00 |
|
Erik Krogh Kristensen
|
30ba69d991
|
treat "files" in a package.json as main modules, if "main" is not present
|
2021-04-08 14:42:12 +02:00 |
|
Erik Krogh Kristensen
|
99dd5330c2
|
add taint-step for URL construction in js/request-forgery
|
2021-04-08 11:10:33 +02:00 |
|
CodeQL CI
|
a9527fd913
|
Merge pull request #5621 from erik-krogh/shellSink
Approved by esbena
|
2021-04-08 09:47:45 +01:00 |
|
CodeQL CI
|
f0491af64c
|
Merge pull request #5529 from erik-krogh/socketInput
Approved by esbena
|
2021-04-07 15:03:13 +01:00 |
|
Asger F
|
0c724a8427
|
Merge pull request #5304 from asgerf/js/non-alert-data
JS: Implement new metric queries for line counting
|
2021-04-07 14:52:51 +01:00 |
|
Erik Krogh Kristensen
|
365b4d722d
|
backtrack string-concatenations from shell-execution sinks
|
2021-04-07 15:34:54 +02:00 |
|
CodeQL CI
|
073a43ce74
|
Merge pull request #5606 from erik-krogh/shellInput
Approved by esbena
|
2021-04-07 14:30:31 +01:00 |
|
Erik Krogh Kristensen
|
c9f54ea1ad
|
update expected output
|
2021-04-07 12:37:17 +00:00 |
|
Asger Feldthaus
|
26cddc7d04
|
JS: Update test output
|
2021-04-07 12:28:45 +01:00 |
|
Asger Feldthaus
|
69973d0fa2
|
JS: Autoformat
|
2021-04-07 11:24:11 +01:00 |
|
Erik Krogh Kristensen
|
a66083d685
|
change "Uncontrolled path" to "Path concatenation"
|
2021-04-07 08:23:07 +00:00 |
|
CodeQL CI
|
fd4e8f8282
|
Merge pull request #5526 from erik-krogh/quotedShell
Approved by esbena
|
2021-04-07 08:39:01 +01:00 |
|
CodeQL CI
|
61880ba90a
|
Merge pull request #5530 from erik-krogh/moreFS
Approved by esbena
|
2021-04-07 08:37:23 +01:00 |
|
Erik Krogh Kristensen
|
2c1cc9ead6
|
use local variable instead of module.exports in example
Co-authored-by: Esben Sparre Andreasen <esbena@github.com>
|
2021-04-06 15:17:31 +02:00 |
|
Erik Krogh Kristensen
|
41b89669a9
|
add joined paths as a sink to js/shell-command-constructed-from-input
|
2021-04-06 12:14:00 +02:00 |
|
Erik Krogh Kristensen
|
c194598d37
|
recognize headers/url from the HTTP request to a server WebSocket.
|
2021-04-06 10:11:27 +02:00 |
|
Asger Feldthaus
|
acc28df785
|
JS: Bugfix in tsconfig file inclusion handling
|
2021-04-01 16:33:05 +01:00 |
|
Asger Feldthaus
|
564a6873f8
|
JS: Add baseUrl test
|
2021-04-01 16:33:05 +01:00 |
|
Asger Feldthaus
|
c4ab6fb7b4
|
JS: Add ImportGraph meta query
|
2021-04-01 16:33:05 +01:00 |
|
Asger Feldthaus
|
f07030ba97
|
JS: Update AdditionalFlowStep -> SharedFlowStep
|
2021-04-01 13:16:47 +01:00 |
|