semmle-qlci
|
b11b714152
|
Merge pull request #696 from esben-semmle/js/host-request-forgery
Approved by asger-semmle
|
2018-12-19 15:04:08 +00:00 |
|
Asger F
|
60ae3e58b8
|
JS: update change note
|
2018-12-19 11:26:37 +00:00 |
|
Asger F
|
9440aab3d0
|
TS: add change note
|
2018-12-19 10:42:02 +00:00 |
|
Asger F
|
f9da1dc03e
|
JS: add change note
|
2018-12-19 10:25:49 +00:00 |
|
Asger F
|
1246de466a
|
JS: add change note
|
2018-12-18 13:58:03 +00:00 |
|
Asger F
|
e1c25c81f6
|
JS: add change note
|
2018-12-17 16:34:35 +00:00 |
|
Tom Hvitved
|
e14259126e
|
Merge pull request #658 from calumgrant/cs/extractor/for-is
C#: Fix extraction bug for variable declarations in for condition
|
2018-12-17 16:16:00 +01:00 |
|
Jonas Jensen
|
5ac5aa0c2a
|
Merge remote-tracking branch 'upstream/master' into mergeback-20181217
|
2018-12-17 13:42:45 +01:00 |
|
Asger F
|
7adf1d9958
|
Merge pull request #631 from esben-semmle/js/bad-url-regexing
JS: add query: js/incomplete-url-regexp
|
2018-12-17 11:53:22 +00:00 |
|
Tom Hvitved
|
5f269b2d87
|
Merge branch 'master' into cs/extractor/for-is
|
2018-12-17 11:14:50 +01:00 |
|
Esben Sparre Andreasen
|
3cd62234d4
|
JS: change notes for js/request-forgery improvements
|
2018-12-17 10:33:39 +01:00 |
|
Aditya Sharad
|
7bc729a7dc
|
Merge master into next.
|
2018-12-14 10:16:47 +00:00 |
|
Esben Sparre Andreasen
|
bb3e3a541d
|
JS: address doc review comments
|
2018-12-14 10:24:30 +01:00 |
|
Tom Hvitved
|
b11d5c5075
|
Merge pull request #679 from calumgrant/cs/omitted-array-size
C#: Extract stackalloc initializers
|
2018-12-14 07:48:46 +01:00 |
|
Aditya Sharad
|
f71e5ac338
|
Merge master into next.
|
2018-12-13 17:57:31 +00:00 |
|
Aditya Sharad
|
ce8ca5979b
|
Merge rc/1.19 into next.
|
2018-12-13 12:23:59 +00:00 |
|
Geoffrey White
|
ca999473b0
|
CPP: Change note.
|
2018-12-13 10:17:43 +00:00 |
|
Max Schaefer
|
e194021c3b
|
Merge pull request #629 from esben-semmle/js/persistent-read-taint
JS: add persistent storage taint steps
|
2018-12-13 08:24:42 +00:00 |
|
Max Schaefer
|
969fe6e4f1
|
Merge pull request #657 from esben-semmle/js/classify-more-files
JS: classify additional files
|
2018-12-13 08:20:33 +00:00 |
|
Aditya Sharad
|
f92456fcad
|
Merge master into next.
Conflict in `cpp/ql/test/library-tests/sideEffects/functions/sideEffects.expected`,
resolved by accepting test output (combining changes).
|
2018-12-12 17:26:18 +00:00 |
|
calum
|
5596bc8827
|
C#: Add change note.
|
2018-12-12 16:16:07 +00:00 |
|
Anders Schack-Mulligen
|
2150af9732
|
Java: Add change note about CFG cast deprecation.
|
2018-12-12 15:04:19 +00:00 |
|
Geoffrey White
|
5e39e0ed65
|
CPP: Change note.
|
2018-12-12 11:39:20 +00:00 |
|
Max Schaefer
|
4fc27aaa51
|
Merge branch 'master' into pseudo-random-bytes
|
2018-12-12 08:19:57 +00:00 |
|
Asger F
|
a01a9dc5cc
|
JS: add crypto.pseudoRandomBytes as source in InsecureRandomness.ql
|
2018-12-11 16:06:22 +00:00 |
|
Aditya Sharad
|
dde42a5723
|
Merge rc/1.19 into next.
|
2018-12-11 14:38:58 +00:00 |
|
calum
|
f0fb47cde0
|
C#: Update change notes.
|
2018-12-11 10:31:45 +00:00 |
|
Esben Sparre Andreasen
|
36e36a414e
|
JS: change notes for improve file classification
|
2018-12-11 10:01:54 +01:00 |
|
Max Schaefer
|
4d186e0edc
|
JavaScript: Teach Unused{Variable,Parameter} to ignore variables with leading underscore.
|
2018-12-11 08:50:50 +00:00 |
|
Esben Sparre Andreasen
|
09e7124bb1
|
JS: update change notes for renamed query
|
2018-12-10 22:22:54 +01:00 |
|
Esben Sparre Andreasen
|
c65c7e700e
|
JS: change notes for js/incomplete-url-regexp
|
2018-12-10 22:21:01 +01:00 |
|
Jonas Jensen
|
a4b3b1e8c8
|
Merge pull request #653 from geoffw0/ex-ch-notes
CPP: Additional change notes (for 1.20)
|
2018-12-10 16:59:12 +01:00 |
|
Geoffrey White
|
709fd6382a
|
CPP: Change note for #562.
|
2018-12-10 13:51:15 +00:00 |
|
Geoffrey White
|
6b7337d766
|
CPP: Change note for #540.
|
2018-12-10 13:42:17 +00:00 |
|
Felicity Chapman
|
882ab7e9ca
|
Merge pull request #636 from jbj/incorrect-not-operator-usage-case
C++: Rename "Incorrect 'not' operator usage"
|
2018-12-10 11:13:19 +00:00 |
|
Geoffrey White
|
d3c6d83786
|
CPP: Change note.
|
2018-12-07 18:43:27 +00:00 |
|
calumgrant
|
67d4099e3f
|
Merge pull request #593 from hvitved/csharp/nullness
C#: Rewrite nullness queries
|
2018-12-07 15:57:27 +00:00 |
|
Aditya Sharad
|
fcfab26267
|
Merge rc/1.19 into next.
|
2018-12-07 12:31:51 +00:00 |
|
Max Schaefer
|
74e3709de1
|
JavaScript: Add missing query id in change notes.
|
2018-12-07 08:25:28 +00:00 |
|
Jonas Jensen
|
00e52df371
|
C++: Rename "Incorrect 'not' operator usage"
This makes the casing consistent with our other queries.
|
2018-12-07 09:24:35 +01:00 |
|
semmle-qlci
|
9e73ed71b9
|
Merge pull request #623 from esben-semmle/js/incomplete-url-sanitization
Approved by mc-semmle
|
2018-12-06 20:46:37 +00:00 |
|
Esben Sparre Andreasen
|
56fb63adbc
|
JS: change notes for js/incomplete-url-substring-sanitization
|
2018-12-06 15:53:20 +01:00 |
|
semmle-qlci
|
3397533045
|
Merge pull request #628 from xiemaisi/js/setUnsafeHTML
Approved by esben-semmle
|
2018-12-06 13:58:52 +00:00 |
|
Esben Sparre Andreasen
|
bf048e7e49
|
JS: change notes for persistent storage taint step and cookie models
|
2018-12-06 14:53:22 +01:00 |
|
Max Schaefer
|
ef347b3870
|
JavaScript: Teach Xss query about WinJS HTML injection functions.
|
2018-12-06 09:13:21 +00:00 |
|
Felicity Chapman
|
6a7b528280
|
1.19: Finalize change notes for JavaScript
|
2018-12-06 08:44:35 +00:00 |
|
Taus
|
a8354b98d9
|
Merge pull request #626 from felicity-semmle/1.19/python-change-notes
Update logging information based on 'extractor-python.md'
|
2018-12-05 17:42:56 +01:00 |
|
Felicity Chapman
|
c735043772
|
Update for feedback
|
2018-12-05 16:36:34 +00:00 |
|
Felicity Chapman
|
9ef50a7876
|
Update logging information based on 'extractor-python.md'
|
2018-12-05 16:13:05 +00:00 |
|
Geoffrey White
|
f6a87574f0
|
CPP: Add query ID to change note.
|
2018-12-05 13:55:46 +00:00 |
|