Harry Maclean
|
cb3ebeedf9
|
Merge pull request #9696 from thiggy1342/experimental-strong-params
RB: Experimental strong params query
|
2022-07-25 12:08:55 +12:00 |
|
thiggy1342
|
6cfde70898
|
Merge branch 'main' into experimental-strong-params
|
2022-07-22 20:41:33 -04:00 |
|
thiggy1342
|
b4d762fb21
|
Merge branch 'main' into experimental-manually-check-request-verb
|
2022-07-22 20:41:23 -04:00 |
|
thiggy1342
|
0c0ba925a7
|
this one should have no tag
|
2022-07-22 18:44:03 +00:00 |
|
thiggy1342
|
f39ca1aad2
|
correct cwe tagged
|
2022-07-22 18:36:25 +00:00 |
|
thiggy1342
|
c2710fb038
|
Update ruby/ql/src/change-notes/2022-07-21-check-http-verb.md
Co-authored-by: Harry Maclean <hmac@github.com>
|
2022-07-22 13:52:00 -04:00 |
|
thiggy1342
|
2c095cf166
|
Update ruby/ql/src/change-notes/2022-07-21-weak-params.md
Co-authored-by: Harry Maclean <hmac@github.com>
|
2022-07-22 13:51:38 -04:00 |
|
Nick Rolfe
|
4767d5a1ba
|
Ruby/QL: speed up trap writing by putting BufWriter in front of GzEncoder
|
2022-07-22 15:37:53 +01:00 |
|
Arthur Baars
|
d44bf326f0
|
Update ruby/extractor/src/main.rs
Co-authored-by: Nick Rolfe <nickrolfe@github.com>
|
2022-07-22 13:36:22 +02:00 |
|
thiggy1342
|
871b6515d5
|
Merge branch 'main' into experimental-manually-check-request-verb
|
2022-07-21 18:47:07 -04:00 |
|
thiggy1342
|
1842bde879
|
add change note
|
2022-07-21 22:13:53 +00:00 |
|
thiggy1342
|
c1a6ca5f94
|
add change note
|
2022-07-21 22:11:14 +00:00 |
|
thiggy1342
|
486a394a7f
|
Update ruby/ql/src/experimental/weak-params/WeakParams.ql
Co-authored-by: Harry Maclean <hmac@github.com>
|
2022-07-21 17:26:09 -04:00 |
|
thiggy1342
|
8fabc06d37
|
fix test assertion
|
2022-07-21 21:25:44 +00:00 |
|
thiggy1342
|
cc958dc171
|
Update ruby/ql/src/experimental/manually-check-http-verb/ManuallyCheckHttpVerb.ql
Co-authored-by: Harry Maclean <hmac@github.com>
|
2022-07-21 17:19:33 -04:00 |
|
Arthur Baars
|
1399610bd4
|
Merge branch 'main' into encoding
|
2022-07-21 21:21:17 +02:00 |
|
Nick Rolfe
|
ed0325f162
|
Merge pull request #9878 from github/nickrolfe/extractor-cleanup
Ruby: some extractor refactoring
|
2022-07-21 17:18:24 +01:00 |
|
Arthur Baars
|
7be106d7bb
|
Ruby: handle magic coding: comments
|
2022-07-21 16:33:18 +02:00 |
|
Arthur Baars
|
27be3dff54
|
Merge pull request #9868 from aibaars/update-tree-sitter-ruby-3
Ruby: update tree-sitter-ruby
|
2022-07-21 16:08:32 +02:00 |
|
Nick Rolfe
|
8dae85e1b1
|
Ruby: avoid repeated construction of table name strings
|
2022-07-21 12:21:06 +01:00 |
|
Nick Rolfe
|
0a8ecd3cf7
|
Ruby: compute path string only once
|
2022-07-21 10:44:30 +01:00 |
|
Nick Rolfe
|
388c9ffb74
|
Ruby: separate trap-writer into its own module
|
2022-07-21 10:44:00 +01:00 |
|
Arthur Baars
|
8d80e0332e
|
Ruby: update tree-sitter-ruby
|
2022-07-20 18:16:30 +02:00 |
|
thiggy1342
|
8c55a15fa6
|
Merge branch 'main' into experimental-manually-check-request-verb
|
2022-07-20 10:27:40 -04:00 |
|
thiggy1342
|
6f74a2609c
|
Merge branch 'main' into experimental-strong-params
|
2022-07-20 10:26:49 -04:00 |
|
thiggy1342
|
f54fc1a88d
|
Merge branch 'main' into add-activerecord-annotate
|
2022-07-20 10:26:44 -04:00 |
|
thiggy1342
|
43a9b8960e
|
Merge branch 'main' into experimental-manually-check-request-verb
|
2022-07-19 10:29:48 -04:00 |
|
thiggy1342
|
cf23d338f3
|
Merge branch 'main' into experimental-strong-params
|
2022-07-19 10:29:36 -04:00 |
|
thiggy1342
|
6bc2fe513d
|
Merge branch 'main' into add-activerecord-annotate
|
2022-07-19 10:29:24 -04:00 |
|
Asger F
|
b9bdee6651
|
Merge branch 'main' into post-release-prep/codeql-cli-2.10.1
|
2022-07-19 16:24:35 +02:00 |
|
Harry Maclean
|
ec1d1eb547
|
Ruby: Add change note
|
2022-07-19 14:33:51 +12:00 |
|
thiggy1342
|
962155fd61
|
fix changenotes
|
2022-07-19 00:33:04 +00:00 |
|
thiggy1342
|
9586259706
|
style tweak for checking multiple method names
|
2022-07-19 00:29:30 +00:00 |
|
thiggy1342
|
304203ad2f
|
fix path problem output
|
2022-07-19 00:25:50 +00:00 |
|
Harry Maclean
|
7b8603c89b
|
Ruby: Model Arel.sql
|
2022-07-19 11:27:15 +12:00 |
|
thiggy1342
|
fc00e56058
|
Merge branch 'main' into experimental-manually-check-request-verb
|
2022-07-18 10:58:13 -04:00 |
|
Arthur Baars
|
c9e5206396
|
Ruby: skip .git folder
|
2022-07-18 15:26:38 +02:00 |
|
Nick Rolfe
|
eebba36b18
|
Merge pull request #9708 from github/nickrolfe/pathname
Ruby: model the standard library's `Pathname` class
|
2022-07-18 11:29:30 +01:00 |
|
Nick Rolfe
|
dbd6607875
|
Ruby: use ASCII dash in comment
Co-authored-by: Harry Maclean <hmac@github.com>
|
2022-07-18 08:54:58 +01:00 |
|
Harry Maclean
|
cc5f59f313
|
Merge pull request #9138 from hmac/hmac/array-inclusion-guard-local-flow
Ruby: Make StringArrayInclusion more sensitive
|
2022-07-18 10:11:49 +12:00 |
|
github-actions[bot]
|
0ee476129a
|
Post-release preparation for codeql-cli-2.10.1
|
2022-07-14 14:38:49 +00:00 |
|
Erik Krogh Kristensen
|
85a652f3d1
|
remove a bunch of repeated words
|
2022-07-14 12:42:48 +02:00 |
|
github-actions[bot]
|
d1aa0d7dd3
|
Release preparation for version 2.10.1
|
2022-07-14 08:56:03 +00:00 |
|
thiggy1342
|
62a10e20b2
|
Merge branch 'main' into experimental-manually-check-request-verb
|
2022-07-13 20:28:09 -04:00 |
|
thiggy1342
|
8ca7d7d775
|
update change note
|
2022-07-14 00:22:38 +00:00 |
|
thiggy1342
|
9d277027a3
|
Merge branch 'main' into experimental-strong-params
|
2022-07-13 20:19:50 -04:00 |
|
thiggy1342
|
3dd61cadf4
|
formatting query
|
2022-07-14 00:19:36 +00:00 |
|
thiggy1342
|
ee79834cc8
|
formatting in qhelp
|
2022-07-14 00:15:39 +00:00 |
|
thiggy1342
|
ae634367c9
|
add qhelp file
|
2022-07-14 00:11:52 +00:00 |
|
thiggy1342
|
2cc703387b
|
use taint config for data flow
|
2022-07-14 00:11:52 +00:00 |
|