amammad
|
18d0b28024
|
v1
|
2023-12-10 20:27:21 +01:00 |
|
amammad
|
1547cd0546
|
added inline tests, move to experimental dir
|
2023-12-05 18:59:46 +01:00 |
|
Maiky
|
d661f7f482
|
Add Flow Labels
|
2023-11-22 19:50:16 +01:00 |
|
amammad
|
eb552b7c93
|
add failingPositiveTests to inlinetests
|
2023-11-22 08:00:38 +01:00 |
|
amammad
|
0328a2986d
|
move TypeORM library file and tests to experimental
add inline tests :)
Fix TypeORM fuzzy method according to Review
|
2023-11-21 19:59:06 +01:00 |
|
Maiky
|
acac534ed0
|
Forgot .js
|
2023-10-16 19:29:57 +02:00 |
|
Maiky
|
07ad596f77
|
Add coverage for express
|
2023-10-16 16:48:32 +02:00 |
|
Asger F
|
449ec72dbe
|
JS: Port experimental queries
|
2023-10-13 13:15:03 +02:00 |
|
amammad
|
32859eb057
|
move to experimental
|
2023-10-10 22:46:44 +02:00 |
|
amammad
|
00b6e1f0b0
|
fix tests
|
2023-10-08 11:03:19 +02:00 |
|
Maiky
|
816eebbb51
|
Add .qhelp and apply some review changes
|
2023-10-02 18:05:39 +02:00 |
|
amammad
|
921198ed30
|
add separate query for sinks that accepts data: URL
|
2023-09-28 20:33:38 +10:00 |
|
amammad
|
8a80a734d8
|
fix an accident :)
|
2023-06-26 20:20:00 +10:00 |
|
amammad
|
307187f6c1
|
V1
|
2023-06-23 06:06:37 +10:00 |
|
jarlob
|
39ff3c72a2
|
Remove label sanitizer because it is prone to race conditions
|
2023-04-03 23:28:31 +02:00 |
|
jarlob
|
c6eaf194a5
|
Remove empty.js as it is not needed anymore
|
2023-04-03 15:09:40 +02:00 |
|
Erik Krogh Kristensen
|
2f8c9a5a2c
|
Merge pull request #12171 from erik-krogh/reg-dot
JS: dont recognize regexps that match dot as sanitizers
|
2023-02-14 14:10:44 +01:00 |
|
erik-krogh
|
4140598769
|
update expected output for experimental query
|
2023-02-14 00:08:13 +01:00 |
|
erik-krogh
|
49f5e89f36
|
update expected output for experimental query
|
2023-01-23 22:29:49 +01:00 |
|
erik-krogh
|
ba2734909f
|
JS: don't use deprecated files in tests
|
2022-11-17 22:12:50 +01:00 |
|
erik-krogh
|
368f84785b
|
fix some more style-guide violations in the alert-messages
|
2022-10-07 11:22:22 +02:00 |
|
Erik Krogh Kristensen
|
5ebea8c75a
|
fix express in the POI test
|
2022-09-05 16:11:54 +02:00 |
|
Erik Krogh Kristensen
|
9cb7522bc1
|
change RouteSetup to a DataFlow::Node
|
2022-09-05 15:45:31 +02:00 |
|
Erik Krogh Kristensen
|
2a65d1d3ec
|
move js/actions/injection out of experimental
|
2022-05-04 16:14:19 +02:00 |
|
Erik Krogh Kristensen
|
8fb54c3f32
|
move js/resource-exhaustion out of experimental
|
2022-04-12 15:51:36 +02:00 |
|
luciaromeroML
|
1f2618b893
|
new test case for unknown base url
|
2021-09-27 17:37:11 -03:00 |
|
Nati Pesaresi
|
629efb85fb
|
ternary operator
|
2021-09-02 17:55:09 -03:00 |
|
valeria-meli
|
0b5c8909dd
|
tests
|
2021-08-03 18:00:49 -03:00 |
|
Max Schaefer
|
6e34784fc5
|
Add new experimental query MultipleArgumentsToSetConstructor.
|
2021-05-21 09:54:41 +01:00 |
|
Erik Krogh Kristensen
|
6bab41ce8b
|
Merge pull request #5350 from JarLob/actions
github actions queries
|
2021-03-18 14:46:25 +01:00 |
|
Jaroslav Lobačevski
|
de6ed1dcb9
|
File rename
|
2021-03-15 18:34:10 +02:00 |
|
Jaroslav Lobačevski
|
a823baabfb
|
Ranamed to CWE-094
|
2021-03-15 18:24:08 +02:00 |
|
Erik Krogh Kristensen
|
caf1dbdc46
|
move TemplateObjectInjection out of experimental
|
2021-03-09 11:29:45 +01:00 |
|
Jaroslav Lobačevski
|
673e64909a
|
github actions queries
|
2021-03-06 10:27:11 +02:00 |
|
Erik Krogh Kristensen
|
a5bde53bfe
|
use the TaintedObject library in js/template-object-injection
|
2021-02-03 12:26:37 +01:00 |
|
Erik Krogh Kristensen
|
c6a22844e2
|
add test for js/template-object-injection
|
2021-02-03 12:16:57 +01:00 |
|
CaptainFreak
|
12ee497485
|
move query to src, rename and refactor
|
2021-02-03 15:48:02 +05:30 |
|
CaptainFreak
|
3363f5e6db
|
JS: add query for Express-HBS LFR
|
2021-02-01 18:01:34 +05:30 |
|
Esben Sparre Andreasen
|
b90dd89746
|
JS: move js/resource-exhaustion to experimental
|
2021-01-21 09:09:01 +01:00 |
|
Esben Sparre Andreasen
|
a0e6562208
|
JS: address review feedback
|
2020-04-22 14:24:35 +02:00 |
|
Esben Sparre Andreasen
|
2747e2a0c7
|
JS: formatting
|
2020-04-22 14:24:35 +02:00 |
|
Esben Sparre Andreasen
|
2186ca7efc
|
JS: address non-semantic review feedback
|
2020-04-22 14:24:35 +02:00 |
|
Esben Sparre Andreasen
|
27e5fce0ed
|
JS: make the default PoIConfiguration/enabled inclusive
|
2020-04-22 14:24:34 +02:00 |
|
Esben Sparre Andreasen
|
3b45bcd285
|
JS: remove the standard PoI configurations
|
2020-04-22 14:24:34 +02:00 |
|
Esben Sparre Andreasen
|
dd6378f1d0
|
JS: address PoI review comments
|
2020-04-22 14:24:34 +02:00 |
|
Esben Sparre Andreasen
|
a386d2dcee
|
JS: add missing expected output
|
2020-04-22 14:24:34 +02:00 |
|
Esben Sparre Andreasen
|
607d46e2f9
|
JS: improve PoI tests
|
2020-04-22 14:24:34 +02:00 |
|
Esben Sparre Andreasen
|
e4ea089a0b
|
JS: add experimental PoI module
|
2020-04-22 14:24:34 +02:00 |
|
yo-h
|
43bcd5b26c
|
Add guidelines for experimental CodeQL queries and libraries
|
2020-02-24 15:08:31 -05:00 |
|