Karim Ali
|
420c35d4a2
|
add a query that detects the use of constant salts
|
2022-10-26 15:32:59 +02:00 |
|
Geoffrey White
|
53fa91f8ba
|
Swift: Add comment.
|
2022-10-25 16:51:57 +01:00 |
|
Geoffrey White
|
a67bd4d903
|
Swift: Fix name clash.
|
2022-10-25 16:40:27 +01:00 |
|
Geoffrey White
|
3d025ea77e
|
Merge pull request #10903 from geoffw0/review
Swift: Add some summary queries.
|
2022-10-25 14:47:09 +01:00 |
|
Geoffrey White
|
b59f01f968
|
Swift: Use UnknownFile.
|
2022-10-25 13:44:13 +01:00 |
|
Karim Ali
|
18dd0f650c
|
update iterations threshold to most recent OWASP recommendation
which is at least 120,000 iterations for secure password hashing
|
2022-10-25 14:01:40 +02:00 |
|
Karim Ali
|
408c7bebe5
|
fix .expected file
|
2022-10-25 13:24:37 +02:00 |
|
Karim Ali
|
e8f55b9f0d
|
update output message
|
2022-10-25 13:24:37 +02:00 |
|
Karim Ali
|
c0ac29db16
|
clarify qhelp + add references to it
|
2022-10-25 13:24:37 +02:00 |
|
Karim Ali
|
4b7cb706f6
|
fix error in checking # of iterations
plus also simplify the pattern matching of the sink classes
|
2022-10-25 13:24:37 +02:00 |
|
Karim Ali
|
0d2e7d43b9
|
add expected output
|
2022-10-25 13:24:37 +02:00 |
|
Karim Ali
|
5179a99abb
|
fix test cases to use the correct class name
|
2022-10-25 13:24:37 +02:00 |
|
Karim Ali
|
c4b2519e6c
|
initial draft of the Swift query for CWE-916
|
2022-10-25 13:24:37 +02:00 |
|
Tony Torralba
|
30f5fb6d83
|
Update expectations after merge
|
2022-10-24 14:24:13 +02:00 |
|
Tony Torralba
|
f523fbc9d0
|
Merge branch 'main' into atorralba/swift/customurlschemes
|
2022-10-24 11:41:50 +02:00 |
|
Tony Torralba
|
3973e1ce04
|
Update swift/ql/test/library-tests/dataflow/dataflow/FlowConfig.qll
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2022-10-24 11:37:51 +02:00 |
|
Paolo Tranquilli
|
90d4861b70
|
Merge pull request #10875 from github/redsun82/swift-codegen-doc
Swift: add infrastructure for documenting generated code
|
2022-10-24 10:14:57 +02:00 |
|
Tony Torralba
|
80f7d58fae
|
Add missing tests for not-quite-working flow steps
|
2022-10-24 09:37:22 +02:00 |
|
Geoffrey White
|
8a8b1aff7f
|
Swift: Restrict expressions count to expressions with locations.
|
2022-10-21 18:57:15 +01:00 |
|
Geoffrey White
|
3215295d06
|
Swift: simpkify SummaryStats.ql description.
|
2022-10-21 18:48:08 +01:00 |
|
Paolo Tranquilli
|
6bd09b1858
|
Merge branch 'main' into redsun82/swift-codegen-doc
|
2022-10-21 15:31:52 +02:00 |
|
Paolo Tranquilli
|
408968a417
|
Swift: fix swift compilation in QL tests
|
2022-10-21 15:20:38 +02:00 |
|
Tony Torralba
|
7a43bdbf05
|
Apply suggestions from code review
Co-authored-by: Geoffrey White <40627776+geoffw0@users.noreply.github.com>
|
2022-10-21 10:20:01 +02:00 |
|
Geoffrey White
|
138643519c
|
Merge pull request #10757 from geoffw0/sqlinject
Swift: Query for SQL injection
|
2022-10-20 18:55:38 +01:00 |
|
Geoffrey White
|
661106c1a0
|
Apply suggestions from code review
Co-authored-by: Ben Ahmady <32935794+subatoi@users.noreply.github.com>
|
2022-10-20 17:54:40 +01:00 |
|
Geoffrey White
|
5a3577679d
|
Swift: Improve metadata.
|
2022-10-20 12:44:56 +01:00 |
|
Geoffrey White
|
adeef309f3
|
Swift: Add some queries to help examine databases.
|
2022-10-20 12:34:07 +01:00 |
|
Paolo Tranquilli
|
7144383505
|
Swift: fix british spelling of behaviour
|
2022-10-20 11:43:46 +02:00 |
|
Paolo Tranquilli
|
8813aea893
|
Swift: allow default class doc name to be set for properties
|
2022-10-20 11:23:13 +02:00 |
|
Paolo Tranquilli
|
37b405f134
|
Swift: add generated docs for predicates
|
2022-10-20 11:05:01 +02:00 |
|
Paolo Tranquilli
|
22bd10132f
|
Swift: insert blank line between doc and desc
|
2022-10-20 10:49:26 +02:00 |
|
Paolo Tranquilli
|
b65f49bd50
|
Swift: document introducer_int
|
2022-10-20 10:46:12 +02:00 |
|
Paolo Tranquilli
|
7b181a2de0
|
Swift: change doc of Immediate property getters
|
2022-10-20 10:39:37 +02:00 |
|
Paolo Tranquilli
|
6830c2f355
|
Swift: enhance property docs
|
2022-10-20 10:35:47 +02:00 |
|
Geoffrey White
|
5b1e138300
|
Swift: Another qhelp edit.
|
2022-10-19 20:49:26 +01:00 |
|
Geoffrey White
|
495f744cd3
|
Swift: Attempt to address qhelp suggestions.
|
2022-10-19 20:44:27 +01:00 |
|
Geoffrey White
|
05d9c7b892
|
Swift: More 'an SQL' -> 'a SQL'.
|
2022-10-19 19:44:59 +01:00 |
|
Geoffrey White
|
83dc6d1564
|
Apply suggestions from code review
Co-authored-by: Ben Ahmady <32935794+subatoi@users.noreply.github.com>
|
2022-10-19 19:42:35 +01:00 |
|
Tony Torralba
|
c2a2d6b379
|
Fix LaunchOptionsUrlVarDecl
Update test expectations
|
2022-10-19 17:42:28 +02:00 |
|
Tony Torralba
|
e2c9240973
|
Add a new Custom URL Scheme source
Also adds a couple of data flow steps to model flow through `?` expressions.
|
2022-10-19 16:55:14 +02:00 |
|
Paolo Tranquilli
|
861377f650
|
Swift: property doc tweaks
|
2022-10-19 11:40:05 +02:00 |
|
Geoffrey White
|
027b71381a
|
Swift: annotate all cases.
|
2022-10-18 16:38:02 +01:00 |
|
Paolo Tranquilli
|
65fd9cbf9c
|
Swift: docname and desc examples
|
2022-10-18 17:05:19 +02:00 |
|
Paolo Tranquilli
|
8de7df9c21
|
Swift: add auto-generated docs for getters
|
2022-10-18 17:04:51 +02:00 |
|
Paolo Tranquilli
|
5f7fa6f915
|
Swift: generate class docs
Python docstrings in `schema.py` are now added to the generated classes.
As an example, a docstring is added to `Expr`.
|
2022-10-18 17:04:51 +02:00 |
|
Tony Torralba
|
1d745a6365
|
Merge pull request #10774 from atorralba/atorralba/swift/url-field-summaries
Swift: Add summaries for tainted URL fields
|
2022-10-18 15:32:23 +02:00 |
|
Tony Torralba
|
0eeaf71716
|
Simplify models by introducing TaintInheritingContent
|
2022-10-18 12:36:18 +02:00 |
|
Paolo Tranquilli
|
e29fe54b3c
|
Swift: remove redudant import
|
2022-10-18 12:35:35 +02:00 |
|
Paolo Tranquilli
|
f4f5e3e382
|
Swift: remove redundant module namespace
|
2022-10-18 12:32:31 +02:00 |
|
Paolo Tranquilli
|
af3f782ad5
|
Swift: fix TypeDecl.qll
|
2022-10-18 12:21:06 +02:00 |
|