Asger F
|
ad7ecc1df0
|
JavaScript: added change note
|
2018-11-05 11:31:32 +00:00 |
|
calum
|
13f0a401f3
|
C#: Update analysis change notes.
|
2018-11-02 16:46:48 +00:00 |
|
semmle-qlci
|
08833465a0
|
Merge pull request #386 from xiemaisi/js/lodash_partial
Approved by esben-semmle
|
2018-11-01 09:44:14 +00:00 |
|
semmle-qlci
|
a22aa3524e
|
Merge pull request #388 from asger-semmle/revert-useless-conditional
Approved by esben-semmle
|
2018-11-01 09:23:19 +00:00 |
|
semmle-qlci
|
fa81084d79
|
Merge pull request #330 from aschackmull/java/zipslip
Approved by yh-semmle
|
2018-10-31 14:40:43 +00:00 |
|
semmle-qlci
|
f00863fb58
|
Merge pull request #383 from esben-semmle/js/unused-eval-variable
Approved by xiemaisi
|
2018-10-31 10:42:55 +00:00 |
|
Asger F
|
2c11844c5b
|
Revert "Merge pull request #380 from asger-semmle/generalize-useless-conditional"
This reverts commit 28f3b686a7, reversing
changes made to dc3c5a684c.
|
2018-10-31 10:38:38 +00:00 |
|
Anders Schack-Mulligen
|
bf6b7c4734
|
Java: Add ZipSlip query.
|
2018-10-31 11:38:27 +01:00 |
|
Max Schaefer
|
c75d785684
|
JavaScript: Fix modelling of _.partial.
Like `Function.prototype.bind` (but unlike `ramda.partial`) it takes the curried arguments as rest arguments, not as an array;
cf. https://lodash.com/docs/4.17.10#partial and https://underscorejs.org/#partial.
|
2018-10-31 06:31:59 -04:00 |
|
Asger F
|
0bc30003af
|
JS: add change note
|
2018-10-31 10:28:31 +00:00 |
|
semmle-qlci
|
28f3b686a7
|
Merge pull request #380 from asger-semmle/generalize-useless-conditional
Approved by esben-semmle
|
2018-10-31 07:31:06 +00:00 |
|
Asger F
|
1568d5dadd
|
JS: add change note
|
2018-10-30 14:25:05 +00:00 |
|
Jonas Jensen
|
784b2749e6
|
Merge branch 'master' into rdmarsh/cpp/memset-decltype-changenote
|
2018-10-30 14:05:26 +01:00 |
|
Esben Sparre Andreasen
|
eb7add6f15
|
JS: change note for js/unused-local-variable eval whitelisting
|
2018-10-30 13:08:24 +01:00 |
|
semmle-qlci
|
8b866ade0e
|
Merge pull request #373 from asger-semmle/jsx-factory-import
Approved by xiemaisi
|
2018-10-30 10:35:49 +00:00 |
|
Robert Marsh
|
fda75abcd7
|
Merge pull request #381 from geoffw0/comments
CPP: Fix false positive in EmptyBlock.ql
|
2018-10-29 15:35:08 -07:00 |
|
Geoffrey White
|
e7f2d7fb45
|
CPP: Change note.
|
2018-10-29 16:54:31 +00:00 |
|
Tom Hvitved
|
3f6fb0f573
|
Merge pull request #364 from calumgrant/cs/extractor/fix-violations
C#: Remove results from cs/local-shadows-member
|
2018-10-29 11:25:23 +01:00 |
|
semmle-qlci
|
c2e7627f61
|
Merge pull request #351 from nystrom/master
Approved by pavgust
|
2018-10-26 19:09:02 +01:00 |
|
Robert Marsh
|
306b711e76
|
Merge pull request #368 from geoffw0/buffersize
CPP: Improve memberMayBeVarSize
|
2018-10-26 09:59:45 -07:00 |
|
Asger F
|
7285562c72
|
JS: add change note
|
2018-10-26 12:09:10 +01:00 |
|
calumgrant
|
ec2bf914c8
|
Merge pull request #339 from hvitved/csharp/cfg/assertions
C#: Detect constantly failing assertions in the CFG
|
2018-10-26 10:32:23 +01:00 |
|
semmle-qlci
|
cbc2d9e257
|
Merge pull request #361 from aschackmull/java/springweb-servlet-sources
Approved by yh-semmle
|
2018-10-26 02:06:11 +01:00 |
|
semmle-qlci
|
905911014d
|
Merge pull request #358 from aschackmull/java/sql-sinks
Approved by yh-semmle
|
2018-10-26 01:42:37 +01:00 |
|
Geoffrey White
|
4c6cc3abdb
|
CPP: Change note.
|
2018-10-25 15:01:00 +01:00 |
|
calum
|
448b080d4f
|
C#: Fix typos.
|
2018-10-25 13:45:46 +01:00 |
|
Anders Schack-Mulligen
|
26bcf4bf5f
|
Java: Add change note.
|
2018-10-25 14:34:14 +02:00 |
|
Tom Hvitved
|
a3d74b00e0
|
C#: Address review comments
|
2018-10-25 14:15:09 +02:00 |
|
calum
|
8cdfb8707c
|
C#: Update change notes.
|
2018-10-24 17:54:10 +01:00 |
|
Anders Schack-Mulligen
|
1d716ae461
|
Java: Add remote user input sources for Spring servlets.
|
2018-10-24 15:00:15 +02:00 |
|
Anders Schack-Mulligen
|
263de5219a
|
Java: Add additional SQL injection sinks.
|
2018-10-24 13:58:21 +02:00 |
|
Jonas Jensen
|
7affbe4a7d
|
Merge pull request #341 from geoffw0/av_114
CPP: Improve AV Rule 114.ql's understanding of return types.
|
2018-10-24 09:39:51 +02:00 |
|
Jonas Jensen
|
640de0c947
|
Merge pull request #304 from geoffw0/resource-released
CPP: Fix false positive in AV Rule 79.ql
|
2018-10-23 20:24:23 +02:00 |
|
semmledocs-ac
|
1f390f2f77
|
Merge pull request #326 from rdmarsh2/rdmarsh/cpp/dead-code-goto
C++: new query for dead code after goto or break
|
2018-10-23 16:55:14 +01:00 |
|
Geoffrey White
|
982fd522f1
|
CPP: Change note.
|
2018-10-23 13:05:43 +01:00 |
|
Max Schaefer
|
212edc2e18
|
Merge pull request #307 from esben-semmle/js/unused-import
JS: make js/unused-local-variable flag import statements
|
2018-10-22 13:13:02 +01:00 |
|
Tom Hvitved
|
135271e9ad
|
Merge pull request #287 from calumgrant/cs/lock-order
C#: Improvements to cs/inconsistent-lock-sequence
|
2018-10-22 14:11:20 +02:00 |
|
Dave Bartolomeo
|
dbae5c2d62
|
Update change-notes/1.19/analysis-cpp.md
Co-Authored-By: geoffw0 <geoffrey@semmle.com>
|
2018-10-22 11:50:18 +01:00 |
|
Geoffrey White
|
ebeda2fb99
|
CPP: Change note.
|
2018-10-19 22:55:09 +01:00 |
|
calum
|
4200c5b57c
|
C#: Analysis change notes.
|
2018-10-19 18:13:03 +01:00 |
|
Tom Hvitved
|
a683990bfd
|
C#: Add change note
|
2018-10-19 14:42:03 +02:00 |
|
Esben Sparre Andreasen
|
9c2ca9a7fa
|
JS: make js/unused-local-variable flag import statements
|
2018-10-18 11:49:45 +02:00 |
|
calum
|
ee396af385
|
C#: Update analysis change notes.
|
2018-10-18 10:24:28 +01:00 |
|
Anders Schack-Mulligen
|
0c37ea876d
|
Java: Fix FPs for concurrent modification checks.
|
2018-10-18 09:44:26 +02:00 |
|
semmle-qlci
|
3af91d5d0a
|
Merge pull request #301 from aschackmull/java/modulus-analysis
Approved by yh-semmle
|
2018-10-18 08:24:32 +01:00 |
|
Robert Marsh
|
17537bb88b
|
C++: respond to doc comments
|
2018-10-17 11:57:54 -07:00 |
|
semmle-qlci
|
1da873e819
|
Merge pull request #315 from esben-semmle/js/conditional-bypass-early-return
Approved by xiemaisi
|
2018-10-17 08:25:55 +01:00 |
|
Robert Marsh
|
61f338449c
|
C++: Change note and precision for DeadCodeGoto.ql
|
2018-10-16 15:40:59 -07:00 |
|
Esben Sparre Andreasen
|
870811a509
|
JS: change note for improved ClientRequests (overdue)
|
2018-10-16 08:51:32 +02:00 |
|
Esben Sparre Andreasen
|
ffbbb807f4
|
JS: avoid flagging early returns in js/user-controlled-bypass
|
2018-10-16 08:39:59 +02:00 |
|