Napalys Klicius
|
fc0c8a8f5a
|
JS: update change note
|
2025-06-17 08:20:35 +02:00 |
|
Napalys Klicius
|
eca69e1654
|
JS: remove serialize-javascript from JsonParsers.qll as it is not a parser
|
2025-06-16 12:59:36 +02:00 |
|
Napalys Klicius
|
fffbc0c0bc
|
JS: add change note
|
2025-06-16 10:38:27 +02:00 |
|
Napalys Klicius
|
5a107ec33b
|
JS: track taint through serialize-javascript calls with object arguments
|
2025-06-16 10:38:20 +02:00 |
|
Napalys Klicius
|
a96ea182c7
|
JS: add test cases for serialize-javascript with tainted object properties
|
2025-06-16 09:30:52 +02:00 |
|
Napalys Klicius
|
0906d85b39
|
Merge pull request #19726 from Napalys/js/quality/string_interpolation
JS: Promote `js/template-syntax-in-string-literal` to the Code Quality suite.
|
2025-06-13 13:36:53 +02:00 |
|
Napalys Klicius
|
28ae39694f
|
Merge pull request #19741 from Napalys/js/quality/suspicious_method_names
JS: Promote `js/suspicious-method-name-declaration` to the Code Quality suite.
|
2025-06-12 15:30:13 +02:00 |
|
Napalys Klicius
|
d7ad625de3
|
JS: restrict type tracking to strings of interest.
|
2025-06-12 14:28:00 +02:00 |
|
Napalys Klicius
|
da5cd251be
|
Update javascript/ql/src/LanguageFeatures/TemplateSyntaxInStringLiteral.ql
Co-Authored-By: Asger F <316427+asgerf@users.noreply.github.com>
|
2025-06-12 14:25:00 +02:00 |
|
Napalys Klicius
|
e6d26912e0
|
Update javascript/ql/src/Declarations/SuspiciousMethodNameDeclaration.qhelp
Co-authored-by: Asger F <asgerf@github.com>
|
2025-06-12 13:10:27 +02:00 |
|
Napalys Klicius
|
7b91a57eb1
|
JS: add change note.
|
2025-06-12 12:19:39 +02:00 |
|
Napalys Klicius
|
75ee649362
|
JS: add change note
|
2025-06-12 12:14:14 +02:00 |
|
Napalys Klicius
|
923aff2439
|
JS: Fixed false positive on manual string interpolation.
|
2025-06-12 11:35:33 +02:00 |
|
Napalys Klicius
|
bafe7e66ad
|
JS: Fix template literal detection in string concatination
|
2025-06-12 11:18:20 +02:00 |
|
Napalys Klicius
|
861e4ee11e
|
JS: Added test cases including manual interpolation and string concatination.
|
2025-06-12 11:15:36 +02:00 |
|
Napalys Klicius
|
c5a1421405
|
JS: promote suspicious-method-name-declaration to quality query.
|
2025-06-12 09:54:01 +02:00 |
|
Napalys Klicius
|
60e3b0c8e7
|
JS: Update qhelp and added more examples.
|
2025-06-12 09:53:56 +02:00 |
|
Napalys Klicius
|
41f4236b86
|
JS: expanded suspicious-method-name-declaration test suite
|
2025-06-12 09:29:30 +02:00 |
|
Asger F
|
423ffc78db
|
Merge pull request #19078 from asgerf/js/name-resolution
JS: QL-side type/name resolution for TypeScript and JSDoc
|
2025-06-11 14:17:11 +02:00 |
|
Napalys Klicius
|
92084dd74f
|
JS: add js/template-syntax-in-string-literal to the Code Quality suite.
|
2025-06-11 11:48:05 +02:00 |
|
Napalys Klicius
|
6811cad687
|
Merge pull request #19711 from Napalys/js/quality/promote_duplicate_char_class
JS: Promote `js/regex/duplicate-in-character-class` to quality
|
2025-06-11 11:05:07 +02:00 |
|
Asger F
|
e848aa747b
|
JS: Clarifying comment on commonStep
|
2025-06-11 10:24:21 +02:00 |
|
Asger F
|
2aa5fa17f7
|
JS: Add comment and examples in FlowImpl doc
|
2025-06-11 10:21:24 +02:00 |
|
Asger F
|
72cc439125
|
JS: Normalize a few more extensions
|
2025-06-10 17:36:56 +02:00 |
|
Asger F
|
18f9133715
|
JS: Rename and clarify comment for trackFunctionType
|
2025-06-10 16:14:46 +02:00 |
|
Asger F
|
a6488cbad9
|
Update javascript/ql/lib/semmle/javascript/internal/NameResolution.qll
Co-authored-by: Erik Krogh Kristensen <erik-krogh@github.com>
|
2025-06-10 16:06:42 +02:00 |
|
Napalys Klicius
|
51b83dbce5
|
Merge pull request #19579 from Napalys/js/dom_property_access
JS: Improve `useless-expression` query to avoid duplicate alerts on compound expressions
|
2025-06-10 15:17:13 +02:00 |
|
Napalys Klicius
|
d968dd0fa1
|
Removed <strong> usage and updated r?e[m|x] example
|
2025-06-10 13:34:24 +02:00 |
|
Napalys Klicius
|
65b1275a19
|
Update javascript/ql/src/RegExp/DuplicateCharacterInCharacterClass.qhelp
Co-authored-by: Asger F <asgerf@github.com>
|
2025-06-10 13:26:08 +02:00 |
|
Napalys Klicius
|
e46581163a
|
Update javascript/ql/lib/Expressions/ExprHasNoEffect.qll
Co-Authored-By: Asger F <316427+asgerf@users.noreply.github.com>
|
2025-06-10 13:23:31 +02:00 |
|
Napalys Klicius
|
496d8d44eb
|
Update javascript/ql/lib/Expressions/ExprHasNoEffect.qll
Co-authored-by: Asger F <asgerf@github.com>
|
2025-06-10 13:19:48 +02:00 |
|
Napalys Klicius
|
e6f071ce46
|
Update javascript/ql/lib/Expressions/ExprHasNoEffect.qll
Co-authored-by: Asger F <asgerf@github.com>
|
2025-06-10 13:18:48 +02:00 |
|
Napalys Klicius
|
a0db250dc3
|
Update javascript/ql/test/query-tests/RegExp/DuplicateCharacterInCharacterClass/tst.js
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2025-06-10 12:50:07 +02:00 |
|
Napalys Klicius
|
d68f5ebddb
|
Added quality tag to js/regex/duplicate-in-character-class
|
2025-06-10 12:10:33 +02:00 |
|
Napalys Klicius
|
417ca1aceb
|
Enchanced js/regex/duplicate-in-character-class's qhelp
|
2025-06-10 12:10:25 +02:00 |
|
Napalys Klicius
|
42a880bf58
|
Improved test coverage for js/regex/duplicate-in-character-class
|
2025-06-10 11:07:22 +02:00 |
|
Napalys Klicius
|
c97da2eda5
|
Exclude expressions that are part of a conditional expression
|
2025-06-10 10:56:11 +02:00 |
|
Napalys Klicius
|
b7f7092ab3
|
Added test cases for better test coverage
|
2025-06-10 09:37:40 +02:00 |
|
github-actions[bot]
|
21463a9653
|
Post-release preparation for codeql-cli-2.22.0
|
2025-06-09 18:50:20 +00:00 |
|
github-actions[bot]
|
88ba02edf8
|
Release preparation for version 2.22.0
|
2025-06-09 18:14:51 +00:00 |
|
Asger F
|
42f762a140
|
JS: Update test output now that 'satisfies' is a SourceNode
|
2025-06-09 16:22:30 +02:00 |
|
Chuan-kai Lin
|
631502e129
|
Merge branch 'main' into cklin/rc-3.18-mergeback
|
2025-06-09 07:19:40 -07:00 |
|
Asger F
|
691fdb106e
|
JS: Nicer jump-to-def for function declarations
|
2025-06-04 22:17:42 +02:00 |
|
Asger F
|
57fad7e6c9
|
JS: Add SatisfiesExpr
|
2025-06-04 22:17:40 +02:00 |
|
Asger F
|
79101fd121
|
JS: Add test with type casts
|
2025-06-04 22:17:39 +02:00 |
|
Asger F
|
853ba49212
|
Update javascript/ql/lib/semmle/javascript/internal/TypeResolution.qll
Co-authored-by: Napalys Klicius <napalys@github.com>
|
2025-06-04 10:17:25 +02:00 |
|
Napalys Klicius
|
aac56e089a
|
JavaScript: Fix false positive on Flow type annotations in ExprHasNoEffect
|
2025-06-03 15:26:22 +02:00 |
|
Napalys Klicius
|
46b5ded862
|
JS: Enhance void context propagation
|
2025-06-03 15:20:55 +02:00 |
|
Napalys Klicius
|
bf48b59874
|
JS: Removed exclusion of FunctionExpr from compound statements.
|
2025-06-03 15:12:26 +02:00 |
|
Napalys Klicius
|
8521c53a40
|
Renamed test directory to match the query name
Co-Authored-By: Asger F <316427+asgerf@users.noreply.github.com>
|
2025-06-03 14:12:12 +02:00 |
|