Anders Schack-Mulligen
|
843fd37c75
|
Java: Add change note.
|
2020-01-30 10:52:16 +01:00 |
|
Anders Schack-Mulligen
|
b7a8d0e903
|
Apply suggestions from code review
Co-Authored-By: Jonas Jensen <jbj@github.com>
|
2020-01-30 10:41:13 +01:00 |
|
Anders Schack-Mulligen
|
2039ec37e5
|
Java/C++/C#: Add change note for taint-getters.
|
2020-01-29 16:26:23 +01:00 |
|
Tom Hvitved
|
474815bf57
|
Merge pull request #2660 from calumgrant/cs/release-notes
C#: Add release notes and precisions to queries
|
2020-01-29 16:05:45 +01:00 |
|
Esben Sparre Andreasen
|
a6d3afd817
|
JS: support additional Koa request sources
|
2020-01-29 14:49:01 +01:00 |
|
Calum Grant
|
aff0a7534c
|
Update change-notes/1.24/analysis-csharp.md
Fix indentation
Co-Authored-By: James Fletcher <42464962+jf205@users.noreply.github.com>
|
2020-01-29 11:44:17 +00:00 |
|
semmle-qlci
|
fb90c2ba52
|
Merge pull request #2681 from asger-semmle/csrf-only-session-cookie-access
Approved by erik-krogh, max-schaefer
|
2020-01-29 10:46:48 +00:00 |
|
Jonas Jensen
|
27b5902258
|
Merge pull request #2707 from geoffw0/taint-format
C++: Add TaintFunction model to FormattingFunction
|
2020-01-29 08:20:34 +01:00 |
|
Calum Grant
|
6b377d7ad4
|
C#: Analysis change notes
|
2020-01-28 14:59:25 +00:00 |
|
Geoffrey White
|
fc1816cbd7
|
C++: Update change note.
|
2020-01-28 14:53:18 +00:00 |
|
Rasmus Wriedt Larsen
|
9b2ca0c9c7
|
Python: Update web libraries to use HttpSources and HttpSinks
|
2020-01-28 13:06:48 +01:00 |
|
Anders Schack-Mulligen
|
4cb28d9b1d
|
Java: Add new query for large left shifts and bugfix ConstantExpAppearsNonConstant.
|
2020-01-28 10:13:34 +01:00 |
|
Geoffrey White
|
1ddabee1b8
|
C++: Change note.
|
2020-01-28 08:46:46 +00:00 |
|
yo-h
|
8c00671f24
|
Merge pull request #2698 from aschackmull/java/changenote-csrf-query
Java: Add change note for java/spring-disabled-csrf-protection.
|
2020-01-27 21:09:15 -05:00 |
|
Chris Gavin
|
708890add3
|
Java: Add a change note for java/suspicious-date-format.
|
2020-01-27 11:57:56 +00:00 |
|
Anders Schack-Mulligen
|
efe8981129
|
Java: Add change note for java/spring-disabled-csrf-protection.
|
2020-01-27 11:33:31 +01:00 |
|
semmle-qlci
|
7d9956e3f3
|
Merge pull request #2675 from erik-krogh/WebSocket
Approved by esbena
|
2020-01-27 08:40:37 +00:00 |
|
yo-h
|
50320c7828
|
Merge pull request #2628 from aschackmull/java/no-adhoc-testclass
Java: Replace ad-hoc TestClass detection.
|
2020-01-23 14:09:11 -05:00 |
|
Asger Feldthaus
|
406c6eb981
|
JS: Sharpen missing CSRF middleware query
|
2020-01-23 14:22:49 +00:00 |
|
Anders Schack-Mulligen
|
0bbe571064
|
Update change-notes/1.24/analysis-java.md
Co-Authored-By: Felicity Chapman <felicitymay@github.com>
|
2020-01-23 13:13:51 +01:00 |
|
Anders Schack-Mulligen
|
fd141917c7
|
Java: Add change note.
|
2020-01-23 11:08:35 +01:00 |
|
Jonas Jensen
|
ceeb9ab718
|
Merge pull request #2622 from MathiasVP/implicit-function-declaration
C++: Add 'implicit function declaration' query
|
2020-01-23 09:23:44 +01:00 |
|
James Fletcher
|
f1749b3990
|
Merge pull request #2654 from calumgrant/cs/null-dereference
C#: Improvements to cs/dereferenced-value-may-be-null
|
2020-01-22 20:15:20 +00:00 |
|
Erik Krogh Kristensen
|
6345e9bde1
|
add change note
|
2020-01-22 15:14:10 +01:00 |
|
semmle-qlci
|
007b0795ec
|
Merge pull request #2636 from erik-krogh/NewSocketIO
Approved by esbena
|
2020-01-22 13:46:11 +00:00 |
|
Erik Krogh Kristensen
|
1228d506b4
|
update change notes to reflect that library models have improved
|
2020-01-22 12:52:45 +01:00 |
|
Erik Krogh Kristensen
|
750e9786f6
|
add change note for EventEmitter
|
2020-01-22 10:31:38 +01:00 |
|
Calum Grant
|
6692e61fa2
|
C#: Analysis change notes
|
2020-01-21 13:55:32 +00:00 |
|
Calum Grant
|
86fa7e5c38
|
C#: Analysis change notes
|
2020-01-20 14:37:28 +00:00 |
|
Geoffrey White
|
97c346285e
|
CPP: Change note.
|
2020-01-17 18:56:21 +00:00 |
|
Jonas Jensen
|
3632d51abc
|
Merge pull request #2635 from geoffw0/modelstrdup
CPP: Model strdup
|
2020-01-17 19:26:26 +01:00 |
|
Geoffrey White
|
7dbda22a29
|
CPP: Update change note.
|
2020-01-17 16:19:39 +00:00 |
|
Mathias Vorreiter Pedersen
|
303c6aa5b7
|
C++: Added query to suites and change-notes
|
2020-01-17 14:51:40 +01:00 |
|
semmle-qlci
|
4efc418e2c
|
Merge pull request #2617 from asger-semmle/prototype-pollution-utility
Approved by esbena, mchammer01
|
2020-01-16 13:02:07 +00:00 |
|
Geoffrey White
|
f4aba14d3a
|
CPP: Change note.
|
2020-01-16 11:08:19 +00:00 |
|
Asger Feldthaus
|
7141f15858
|
JS: Add change note
|
2020-01-15 11:49:57 +00:00 |
|
Geoffrey White
|
170981ef41
|
CPP: Change note.
|
2020-01-14 14:36:44 +00:00 |
|
semmle-qlci
|
3c4749be88
|
Merge pull request #2624 from asger-semmle/js-duplicate-alert-strict-mode
Approved by max-schaefer
|
2020-01-14 11:59:45 +00:00 |
|
Asger Feldthaus
|
2245882441
|
JS: Add change note and fix cwe tags
|
2020-01-14 10:53:40 +00:00 |
|
Asger Feldthaus
|
73e60a7400
|
JS: Ignore strict-mode-call-stack-introspection for expr stmts
|
2020-01-13 16:03:03 +00:00 |
|
semmle-qlci
|
40de391490
|
Merge pull request #2616 from asger-semmle/promise-missing-await-change-note
Approved by mchammer01
|
2020-01-13 12:03:11 +00:00 |
|
Asger F
|
6c4da30a64
|
Update change-notes/1.24/analysis-javascript.md
Co-Authored-By: mc <42146119+mchammer01@users.noreply.github.com>
|
2020-01-13 11:05:03 +00:00 |
|
Anders Schack-Mulligen
|
183fd91a01
|
Merge pull request #2615 from yo-h/java-add-change-note
Java: add change note for `java/maven/non-https-url`
|
2020-01-13 09:54:48 +01:00 |
|
yo-h
|
bf8ef42c1a
|
Java: add change note for java/maven/non-https-url
|
2020-01-10 11:03:48 -05:00 |
|
Asger Feldthaus
|
18db551e10
|
JS: Add change note for js/missing-await
|
2020-01-10 11:10:57 +00:00 |
|
Anders Schack-Mulligen
|
ad92d6fe0f
|
Merge pull request #2607 from yo-h/java-alert-suppression-block-comment
Java: allow single-line `/* ... */` comments for alert suppression
|
2020-01-10 11:05:23 +01:00 |
|
yo-h
|
7ffa517803
|
Merge pull request #2584 from aschackmull/java/nonnull-final-field
Java: Include non-null final fields in clearlyNotNull.
|
2020-01-09 18:48:45 -05:00 |
|
semmle-qlci
|
f1f69ef85d
|
Merge pull request #2589 from esbena/js/ignore-duplicate-params-for-empty-functions
Approved by erik-krogh
|
2020-01-09 11:58:04 +00:00 |
|
shati-patel
|
3cfc7d2e54
|
Merge pull request #2611 from jf205/mergeback-123
Merge rc/1.23 into master
|
2020-01-08 16:12:47 +00:00 |
|
Dave Bartolomeo
|
6c8de44800
|
Merge pull request #2604 from geoffw0/returnthis
CPP: Exclude template classes from cpp/assignment-does-not-return-this
|
2020-01-08 09:12:22 -07:00 |
|