Erik Krogh Kristensen
|
bbb2847ec1
|
Merge pull request #8323 from erik-krogh/acronyms
Enforcing consistent casing of acronyms
|
2022-03-14 11:38:25 +01:00 |
|
Ahmed Farid
|
3c9de6f488
|
Update Zip.qll
|
2022-03-11 18:50:37 +01:00 |
|
Arthur Baars
|
cf4b834536
|
Address comments
|
2022-03-11 14:25:34 +01:00 |
|
Ahmed Farid
|
f092cd8d80
|
Update Zip.qll
|
2022-03-11 14:15:05 +01:00 |
|
Ahmed Farid
|
eb71cdf7a2
|
Update ZipSlip.ql
|
2022-03-11 14:13:28 +01:00 |
|
Ahmed Farid
|
0de1cef26e
|
Update ZipSlip.qll
|
2022-03-11 14:03:17 +01:00 |
|
Jeroen Ketema
|
93a0da75b6
|
Fix taint tracking configurations that broke due to interface change
|
2022-03-11 12:18:04 +01:00 |
|
Erik Krogh Kristensen
|
69353bb014
|
patch upper-case acronyms to be PascalCase
|
2022-03-11 11:10:33 +01:00 |
|
Erik Krogh Kristensen
|
ddf93b555e
|
PY: fix some ql/non-doc-block warnings
|
2022-03-11 11:02:58 +01:00 |
|
github-actions[bot]
|
3a5ebbb861
|
Post-release preparation for codeql-cli-2.8.3
|
2022-03-11 09:23:34 +00:00 |
|
github-actions[bot]
|
6b194bc55f
|
Release preparation for version 2.8.3
|
2022-03-10 19:43:58 +00:00 |
|
Taus
|
4ee4bba4d1
|
Merge branch 'main' into ZipSlip
|
2022-03-10 13:30:51 +01:00 |
|
jorgectf
|
c155ac6e7a
|
Add HtmlEscaping sanitizer
|
2022-03-10 00:47:04 +01:00 |
|
Erik Krogh Kristensen
|
a1769f8036
|
Python: add default implementation of getName() and deprecate it
|
2022-03-09 18:28:12 +01:00 |
|
Taus
|
7b877fb317
|
Merge pull request #8336 from tausbn/python-fix-a-bunch-of-ql-warnings
Python: Fix a bunch of QL warnings
|
2022-03-09 16:31:28 +01:00 |
|
Rasmus Wriedt Larsen
|
0e9da4aadb
|
Python: Resolve name conflict over XML module
Not the prettiest solution... but it works ¯\_(ツ)_/¯
|
2022-03-09 11:02:28 +01:00 |
|
Ahmed Farid
|
475cca0d7e
|
Update ZipSlip.qll
|
2022-03-09 00:00:52 +01:00 |
|
Ahmed Farid
|
27b9d6c752
|
Update ZipSlip.qll
|
2022-03-08 23:59:03 +01:00 |
|
jorgectf
|
3f43e6ef54
|
Fix FlaskMail's getTo
|
2022-03-08 18:45:53 +01:00 |
|
jorgectf
|
bbba1a21c4
|
Explicitly call this in SendGridMail
|
2022-03-08 18:40:20 +01:00 |
|
jorgectf
|
930fbf777c
|
Move getFlaskMailArgument inside FlaskMail and refactor
|
2022-03-08 18:38:32 +01:00 |
|
jorgectf
|
6b04344655
|
Refactor sendgridContent and sendgridWrite
Move the predicates inside `SendGridMail`.
See https://github.com/github/codeql/pull/7127#discussion_r821574462
|
2022-03-08 18:26:20 +01:00 |
|
jorgectf
|
6722671541
|
Refactor sendgridApiClient and sendgridApiSendCall
Co-authored-by: yoff <lerchedahl@gmail.com>
|
2022-03-08 18:24:38 +01:00 |
|
Taus
|
063a8bbc43
|
Python: Apply suggestions from code review
Co-authored-by: yoff <lerchedahl@gmail.com>
|
2022-03-08 15:20:35 +01:00 |
|
Rasmus Wriedt Larsen
|
6b14c1d6b9
|
Merge branch 'main' into jorgectf/python/deserialization
|
2022-03-08 11:15:03 +01:00 |
|
Taus
|
d2603884ca
|
Python: Fix a bunch of class QLDoc
|
2022-03-07 18:59:49 +00:00 |
|
Taus
|
af7f532212
|
Python: Fix up a bunch of function QLDoc
|
2022-03-07 18:59:49 +00:00 |
|
Arthur Baars
|
ce50f35dda
|
Python: switch to shared implementation of IncompleteHostnameRegExp.ql
|
2022-03-07 16:10:08 +01:00 |
|
Arthur Baars
|
9e8930c192
|
Ruby: IncompleteHostnameRegExp.ql
|
2022-03-07 16:10:08 +01:00 |
|
Rasmus Lerchedahl Petersen
|
895ce755c1
|
python: correct file name
|
2022-03-07 13:03:04 +01:00 |
|
Ahmed Farid
|
6685c6b4b3
|
Update ZipSlip.qll
|
2022-03-07 10:09:53 +01:00 |
|
Ahmed Farid
|
0d9436892a
|
Update zipslip_bad.py
|
2022-03-07 00:24:25 +01:00 |
|
Ahmed Farid
|
ce7923c8b3
|
Update zipslip_bad.py
|
2022-03-07 00:23:19 +01:00 |
|
Ahmed Farid
|
b9b52d4c7c
|
Update zipslip_bad.py
|
2022-03-07 00:02:50 +01:00 |
|
Ahmed Farid
|
d7dacfc6bd
|
Update zipslip_good.py
|
2022-03-07 00:01:55 +01:00 |
|
Ahmed Farid
|
8649375be3
|
Update ZipSlip.qll
|
2022-03-06 23:56:02 +01:00 |
|
Ahmed Farid
|
91b5f2ad34
|
Update Zip.qll
|
2022-03-06 23:54:46 +01:00 |
|
Ahmed Farid
|
466f75bad8
|
Update Concepts.qll
|
2022-03-06 23:53:00 +01:00 |
|
Taus
|
095f27f294
|
Python: Remove deprecated annotations
|
2022-03-04 12:30:26 +00:00 |
|
Taus
|
20710616c5
|
Python: Fix "use set literal" warnings
|
2022-03-04 12:26:36 +00:00 |
|
Rasmus Lerchedahl Petersen
|
93750fe17f
|
python: minimal CSRF implementation
- currectly only looks for custom django middleware
|
2022-03-04 12:47:23 +01:00 |
|
Rasmus Wriedt Larsen
|
ef045a6789
|
Python: Fix typo in set_default_parser
|
2022-03-04 10:18:30 +01:00 |
|
Rasmus Wriedt Larsen
|
f0131afc54
|
Python: Fix huge_tree modeling
|
2022-03-04 10:16:28 +01:00 |
|
Rasmus Wriedt Larsen
|
3cd165d5b7
|
Python: Apply suggestions from code review
Co-authored-by: Jorge <46056498+jorgectf@users.noreply.github.com>
|
2022-03-04 10:15:50 +01:00 |
|
Jorge
|
683c2fa825
|
Apply suggestions from code review
|
2022-03-04 01:02:56 +01:00 |
|
Rasmus Wriedt Larsen
|
3f6c55e8ae
|
Python: Rename vulnerable predicate => vulnerableTo
|
2022-03-03 22:09:31 +01:00 |
|
Rasmus Wriedt Larsen
|
0d69dc854c
|
Python: Minor qldoc improvement
|
2022-03-03 22:06:26 +01:00 |
|
Rasmus Wriedt Larsen
|
837daaae3b
|
Python: Remove XMLParser concept
|
2022-03-03 22:04:48 +01:00 |
|
Rasmus Wriedt Larsen
|
df8e0fce68
|
Python: Minor fixup of qldoc
|
2022-03-03 22:02:48 +01:00 |
|
Rasmus Wriedt Larsen
|
c0a6f9f3fd
|
Python: Restructure lxml modeling
and handle parser being passed as positional argument
|
2022-03-03 22:00:55 +01:00 |
|