Asger Feldthaus
|
710cca5395
|
JS: Update expectations with new sources
|
2021-03-16 13:28:12 +00:00 |
|
Erik Krogh Kristensen
|
aae69c6537
|
update expected output
|
2021-02-01 09:33:52 +01:00 |
|
Erik Krogh Kristensen
|
39591687ba
|
add js/code-injection sink for script tags in React
|
2021-01-29 12:50:17 +01:00 |
|
Asger Feldthaus
|
68d2bc861d
|
JS: Update test expectations
|
2020-12-03 15:01:50 +00:00 |
|
Asger Feldthaus
|
6211fe718b
|
JS: Add test
|
2020-12-01 17:05:48 +00:00 |
|
Max Schaefer
|
e1d90e90ad
|
JavaScript: Add modelling for Module.prototype._compile.
|
2020-10-19 09:42:17 +01:00 |
|
Erik Krogh Kristensen
|
b8154d41b1
|
type-track objects where the "$where" property has been written
|
2020-09-24 20:55:25 +02:00 |
|
Erik Krogh Kristensen
|
664c5e64b4
|
add [INCONSISTENCY] comment in CodeInjection test
|
2020-07-08 09:48:12 +02:00 |
|
Erik Krogh Kristensen
|
210e71cd93
|
update expected output
|
2020-06-16 21:52:59 +02:00 |
|
Erik Krogh Kristensen
|
5ce17bea60
|
add qhelp for js/bad-code-sanitization
|
2020-06-16 16:23:41 +02:00 |
|
Erik Krogh Kristensen
|
a0951f76b6
|
add additional taint steps when type-tracking RemoteFlowSource
|
2020-06-16 14:55:07 +02:00 |
|
Erik Krogh Kristensen
|
c375a0c611
|
fix compilation and update expected output
|
2020-06-11 11:16:38 +02:00 |
|
Erik Krogh Kristensen
|
aa3482cbae
|
improve detection of duplicate results with js/code-injection
|
2020-06-10 22:58:02 +02:00 |
|
Erik Krogh Kristensen
|
373a437d71
|
add query to detect improperly sanitized code
|
2020-06-10 19:50:12 +02:00 |
|
semmle-qlci
|
14664be467
|
Merge pull request #3468 from p0/imp/nodejs-vm-sinks
Approved by esbena
|
2020-05-18 11:10:13 +01:00 |
|
Pavel Avgustinov
|
ab2d059ed4
|
JavaScript: Model extra sinks in vm module
|
2020-05-14 10:01:40 +01:00 |
|
Esben Sparre Andreasen
|
7722d77c86
|
JS: add the NoSQL $where as a sink for js/code-injection
|
2020-05-13 08:30:22 +02:00 |
|
Max Schaefer
|
b42026a90a
|
JavaScript: Update expected output.
|
2019-10-29 15:36:24 +00:00 |
|
Max Schaefer
|
6964945c74
|
JavaScript: Restrict edges to only contain nodes.
|
2019-10-29 15:03:52 +00:00 |
|
Esben Sparre Andreasen
|
f3de75ae07
|
JS: update a js/code-injection test
|
2019-09-11 09:45:54 +02:00 |
|
Asger F
|
f7654d6f1c
|
JS: Add test
|
2019-09-06 14:42:07 +01:00 |
|
Max Schaefer
|
28d8011bcf
|
JavaScript: Add models for popular base64 transcoders.
|
2019-03-13 08:20:58 +00:00 |
|
Asger F
|
50a77ea843
|
JS: update test expectations
|
2019-03-06 08:41:03 +00:00 |
|
Max Schaefer
|
b4f400fb23
|
Merge remote-tracking branch 'upstream/next' into qlucie/master
|
2019-01-04 10:35:57 +00:00 |
|
Asger F
|
bc3b983768
|
JS: move CodeInjection tests into subfolder
|
2018-11-20 14:24:37 +00:00 |
|