Rasmus Lerchedahl Petersen
|
d37c14880f
|
Python: Copy performance fix
|
2021-09-14 15:15:50 +02:00 |
|
haby0
|
9e63aa9d84
|
Update query
|
2021-09-14 21:12:49 +08:00 |
|
Rasmus Lerchedahl Petersen
|
c2d2037726
|
Python: Add change note and set precision
|
2021-09-14 13:45:51 +02:00 |
|
Rasmus Wriedt Larsen
|
8b7fad8595
|
Merge pull request #6283 from tausbn/python-fix-exceptstmt-gettype
Python: Fix `ExceptStmt::getType`
|
2021-09-14 13:40:33 +02:00 |
|
Rasmus Wriedt Larsen
|
49f5f1e2c2
|
Merge pull request #6336 from tausbn/python-make-annotated-assignment-a-definitionnode
Python: Two fixes regarding annotated assignments
|
2021-09-14 13:37:53 +02:00 |
|
Rasmus Lerchedahl Petersen
|
1c7982b319
|
Python: Move query tests over
|
2021-09-14 13:29:21 +02:00 |
|
Rasmus Lerchedahl Petersen
|
36e27f2aa4
|
Python: Remove promoted code:
- queries (`py/regex-injection`)
- concepts (RegexExecution, RegexEscape)
- library models (Stdlib::Re)
|
2021-09-14 13:14:16 +02:00 |
|
Rasmus Lerchedahl Petersen
|
abbd1d1dc5
|
Python: Fix errors introduced during port
testing on a database helps..
|
2021-09-14 13:08:21 +02:00 |
|
Rasmus Lerchedahl Petersen
|
6c82daef3d
|
Python: Move Regexinjection out of experimental
and fix up structure
|
2021-09-14 11:54:59 +02:00 |
|
Rasmus Lerchedahl Petersen
|
3d5192d6d3
|
Python: Fix typos
|
2021-09-14 11:54:11 +02:00 |
|
Rasmus Lerchedahl Petersen
|
a30f697537
|
Python: Add getName to RegexExecution concept
|
2021-09-14 11:53:40 +02:00 |
|
jorgectf
|
b505662ef9
|
Fix global test and update .expected
|
2021-09-14 10:20:50 +02:00 |
|
jorgectf
|
2ccc6dc092
|
Merge branch 'main' into jorgectf/python/ldapinsecureauth
|
2021-09-14 09:32:19 +02:00 |
|
Rasmus Wriedt Larsen
|
f402475dd3
|
Python: Fix globals() == locals() FP
|
2021-09-13 20:03:11 +02:00 |
|
Rasmus Wriedt Larsen
|
69fe2a36e5
|
Python: Add globals() == locals() test
|
2021-09-13 20:02:08 +02:00 |
|
Rasmus Wriedt Larsen
|
ba7cdec2ea
|
Python: Add some lines in test file
These are just empty now, such that it's obvious the tests didn't
change.
|
2021-09-13 20:00:50 +02:00 |
|
Rasmus Wriedt Larsen
|
a9694bf0ef
|
Python: Clean whitespace
|
2021-09-13 19:58:59 +02:00 |
|
Taus
|
b51ce1d2b3
|
Merge pull request #6640 from yoff/python-add-parameter-default-value-flow-step
Python: add parameter default value flow step
|
2021-09-13 17:05:48 +02:00 |
|
Rasmus Lerchedahl Petersen
|
8f152a5bfb
|
Python: Port regex concepts and adapt PolyRedos
|
2021-09-13 16:50:00 +02:00 |
|
jorgectf
|
353c0a9ee7
|
Add missing comment
|
2021-09-12 20:44:04 +02:00 |
|
jorgectf
|
3cf28ad6ce
|
Merge remote-tracking branch 'origin/main' into jorgectf/python/ldapinsecureauth
|
2021-09-12 20:36:25 +02:00 |
|
jorgectf
|
18b05bc56e
|
Fix tests and add global option
|
2021-09-12 20:35:57 +02:00 |
|
jorgectf
|
54012eba23
|
Optimize getFullHostRegex
|
2021-09-12 20:13:08 +02:00 |
|
Chris Smowton
|
38cc9bef02
|
ReDoS: fix unpaired surrogate test
This actually does result in an FP, but this was previously hidden by non-interpretation of '\u' escapes within a raw string.
|
2021-09-10 15:37:34 +01:00 |
|
Rasmus Lerchedahl Petersen
|
2eb11731e2
|
Python: Subpaths in test output
|
2021-09-10 14:04:57 +02:00 |
|
Rasmus Lerchedahl Petersen
|
02fd63ce20
|
Merge branch 'main' of github.com:github/codeql into python/port-modification-of-default-value
To get the subpaths.
|
2021-09-10 14:03:02 +02:00 |
|
Rasmus Lerchedahl Petersen
|
5d137ce9c5
|
Python: Update test expectations
|
2021-09-10 13:35:49 +02:00 |
|
Rasmus Wriedt Larsen
|
db78e3a7da
|
Merge pull request #6274 from tausbn/python-api-graphs-import-star
Python: Support `import *` in API graphs
|
2021-09-10 13:25:41 +02:00 |
|
Rasmus Wriedt Larsen
|
b45743b562
|
Merge pull request #6312 from tausbn/python-deprecate-importnode
Python: Deprecate `importNode`
|
2021-09-10 13:12:56 +02:00 |
|
Rasmus Lerchedahl Petersen
|
7cfa08abc8
|
Python: Do not use BarrierGuards
They are simply not right for this problem.
We should not even make them available as an extension point.
|
2021-09-10 12:48:24 +02:00 |
|
Tom Hvitved
|
649c2ce188
|
Merge pull request #6586 from hvitved/dataflow/stage2-precise-call-ctx-take2
Data flow: Add precise call contexts to stage 2
|
2021-09-10 11:34:35 +02:00 |
|
Rasmus Lerchedahl Petersen
|
b20232db3c
|
Python: Simplify guards as suggested
|
2021-09-10 10:31:48 +02:00 |
|
Tom Hvitved
|
296d10fe2a
|
Data flow: Adjust callMayFlowThroughFwd pragmas
|
2021-09-10 09:21:24 +02:00 |
|
Rasmus Lerchedahl Petersen
|
6c5596d17e
|
Python: rewrite test
|
2021-09-09 13:45:44 +02:00 |
|
Rasmus Lerchedahl Petersen
|
e27b3162e5
|
Python: rewrite simpleLocalFlowStep
to take into account the split between
import time and runtime.
|
2021-09-09 12:43:08 +02:00 |
|
Rasmus Lerchedahl Petersen
|
baca9edbb1
|
Merge branch 'main' of github.com:github/codeql into python-add-parameter-default-value-flow-step
|
2021-09-08 14:48:13 +02:00 |
|
Rasmus Lerchedahl Petersen
|
a9c409403c
|
Python: more tests and comments
|
2021-09-08 14:44:36 +02:00 |
|
Anders Schack-Mulligen
|
1af39f0776
|
Dataflow: Sync.
|
2021-09-08 13:02:07 +02:00 |
|
Anders Schack-Mulligen
|
2b7882e6e5
|
Merge pull request #5032 from aschackmull/dataflow/subpaths
Dataflow: Add subpaths query predicate.
|
2021-09-08 11:52:41 +02:00 |
|
Rasmus Lerchedahl Petersen
|
9b198c6d0a
|
Python: Add some module initialization tests
|
2021-09-08 10:37:28 +02:00 |
|
Rasmus Lerchedahl Petersen
|
4a5f70e6c8
|
Python: Reclassify defaultValueFlowStep
as a `jumpStep`.
|
2021-09-08 10:05:31 +02:00 |
|
jorgectf
|
eee9b3f39e
|
Merge remote-tracking branch 'origin/main' into jorgectf/python/headerInjection
|
2021-09-07 19:54:58 +02:00 |
|
jorgectf
|
352eab0eca
|
Fix HeaderDeclaration class' comment
|
2021-09-07 19:44:25 +02:00 |
|
Jorge
|
190bc2f0da
|
Apply suggestions from code review
Co-authored-by: Taus <tausbn@github.com>
|
2021-09-07 19:42:37 +02:00 |
|
jorgectf
|
4e261c61ae
|
Optimize concatAndCompareAgainstFullHostRegex
|
2021-09-07 19:05:03 +02:00 |
|
jorgectf
|
800801177d
|
Fix taint tracking comment
|
2021-09-07 19:02:32 +02:00 |
|
jorgectf
|
b802d7903a
|
Fix OPT_X_TLS_ mandatory options
|
2021-09-07 19:01:46 +02:00 |
|
jorgectf
|
ee98c0c587
|
Add start_tls_s() comment and use DataFlow::MethodCallNode instead
|
2021-09-07 19:00:14 +02:00 |
|
Jorge
|
1bc16fb31e
|
Apply suggestions from code review
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2021-09-07 18:37:33 +02:00 |
|
yoff
|
43effd2b40
|
Update python/ql/src/semmle/python/functions/ModificationOfParameterWithDefault.qll
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2021-09-07 15:08:50 +02:00 |
|