Anders Schack-Mulligen
|
8485b6f0b3
|
Merge pull request #6691 from bmuskalla/moreStringMethods
Java: Support String#getChars and #translateEscapes
|
2021-09-15 10:14:54 +02:00 |
|
CodeQL CI
|
220f2ded85
|
Merge pull request #6698 from asgerf/js/template-self-assignment
Approved by esbena
|
2021-09-15 01:08:39 -07:00 |
|
Anders Schack-Mulligen
|
3f7d6e6f85
|
Merge pull request #6136 from smowton/smowton/admin/spring-xss-content-type-sensitivity
Spring HTTP: improve content-type sensitivity
|
2021-09-15 09:50:56 +02:00 |
|
Anders Schack-Mulligen
|
2a9e3da24f
|
Merge pull request #6697 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2021-09-15 09:35:09 +02:00 |
|
Asger Feldthaus
|
b5db4047a0
|
JS: Exclude template files in SelfAssignment
|
2021-09-15 08:59:47 +02:00 |
|
haby0
|
c60eded2de
|
Fix conflicting
|
2021-09-15 11:07:43 +08:00 |
|
github-actions[bot]
|
baab70bea6
|
Add changed framework coverage reports
|
2021-09-15 00:07:57 +00:00 |
|
CodeQL CI
|
b25b19f71b
|
Merge pull request #6584 from erik-krogh/clipBoard
Approved by esbena
|
2021-09-14 12:41:49 -07:00 |
|
Erik Krogh Kristensen
|
5a7785776c
|
add upgrade script
|
2021-09-14 20:43:07 +02:00 |
|
Erik Krogh Kristensen
|
fdbf5f73b1
|
add JS support for static initializers
|
2021-09-14 20:40:46 +02:00 |
|
Erik Krogh Kristensen
|
cc0d86403e
|
revert some type changes that are no longer needed
|
2021-09-14 20:40:46 +02:00 |
|
Erik Krogh Kristensen
|
48b763c7e9
|
add qldoc to StaticInitializer::getBody
|
2021-09-14 20:40:46 +02:00 |
|
Erik Krogh Kristensen
|
7ce87a7118
|
remove stray import
|
2021-09-14 20:40:46 +02:00 |
|
Erik Krogh Kristensen
|
c8c7a1f772
|
remove the body field from StaticInitializer and relax the valuye type on MemberDefinition
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
e3ed6c2523
|
refactor StaticInitializer into it's own class
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
23e28ae5d4
|
fix typo in comment
Co-authored-by: Asger F <asgerf@github.com>
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
2a03a84315
|
remove TODO comment
Co-authored-by: Asger F <asgerf@github.com>
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
68ab210dc8
|
update TypeScript version info in versions-compilers.rst
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
ffd51e725f
|
add getter for static initializer blocks
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
9585481d0b
|
add support for static initializer blocks in TypeScript
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
59f15eb4eb
|
add tests for TypeScript 4.4 types
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
02a0eed8ee
|
add basic support for TypeScript 4.4
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
3b6c8c5191
|
Merge branch 'main' into clipBoard
|
2021-09-14 20:21:37 +02:00 |
|
CodeQL CI
|
136d04390d
|
Merge pull request #6695 from erik-krogh/js-add-cwes
Approved by esbena
|
2021-09-14 11:19:35 -07:00 |
|
Nick Rolfe
|
961674e4a8
|
Update expected output now we extract the Gemfile
|
2021-09-14 18:23:57 +01:00 |
|
Nick Rolfe
|
ec13133317
|
Automatically extract .gemspec and Gemfile files
They are just Ruby code, after all.
|
2021-09-14 18:23:57 +01:00 |
|
Nick Rolfe
|
ebf23d00d1
|
Don't parse \A and \Z as RegExpConstant
Fixes some FPs for the ReDoS queries.
|
2021-09-14 16:49:35 +01:00 |
|
Geoffrey White
|
8fd848701e
|
C++: Fix test failure.
|
2021-09-14 16:38:11 +01:00 |
|
Chris Smowton
|
e5b84fb795
|
Use InlineFlowTest
|
2021-09-14 16:37:07 +01:00 |
|
Chris Smowton
|
5d737934c3
|
Don't inherit models from a final class
Co-authored-by: Tony Torralba <atorralba@users.noreply.github.com>
|
2021-09-14 16:37:07 +01:00 |
|
Chris Smowton
|
367a53dd71
|
Add models for android.net.Uri[.Builder]
|
2021-09-14 16:37:07 +01:00 |
|
Harry Maclean
|
12723f0f13
|
Merge pull request #288 from github/hmac-barrier-guard-checks
Make barrier guards more specific
|
2021-09-14 16:16:20 +01:00 |
|
Chris Smowton
|
ca87768a93
|
Merge pull request #6692 from bmuskalla/testGeneratorFlowTest
Java: Test generator uses `InlineFlowTest`
|
2021-09-14 15:44:24 +01:00 |
|
Arthur Baars
|
e03fe0fcd4
|
Add ClassifyFiles.ql
|
2021-09-14 16:30:34 +02:00 |
|
Mathias Vorreiter Pedersen
|
44dca68463
|
Merge branch 'main' into promote-sql-pqxx
|
2021-09-14 15:29:37 +01:00 |
|
Chris Smowton
|
406466de9a
|
Simplify specifiesContentType predicate
|
2021-09-14 15:24:46 +01:00 |
|
Mathias Vorreiter Pedersen
|
adbeba291b
|
Merge pull request #6687 from MathiasVP/fix-fp-in-av-rule-114
C++: Exclude uninstantiated templates from AV Rule 114.
|
2021-09-14 15:24:18 +01:00 |
|
Chris Smowton
|
6cff0d0376
|
Merge pull request #6393 from luchua-bc/java/xss-jsf
Java: CWE-079 Query to detect XSS with JavaServer Faces (JSF)
|
2021-09-14 15:15:56 +01:00 |
|
Anders Fugmann
|
bc22e0d9aa
|
C++: Update comments on memberMayBeVarSize
|
2021-09-14 16:04:39 +02:00 |
|
Tony Torralba
|
4e93330cb9
|
Improved tests
Note that a FN test case was added
|
2021-09-14 15:51:08 +02:00 |
|
Benjamin Muskalla
|
abd770a027
|
Avoid empty template in test generator
|
2021-09-14 15:32:12 +02:00 |
|
Chris Smowton
|
a1ad1ddc10
|
Deprecated and replace uses of old name ServletWriterSource
|
2021-09-14 14:21:29 +01:00 |
|
Rasmus Lerchedahl Petersen
|
d37c14880f
|
Python: Copy performance fix
|
2021-09-14 15:15:50 +02:00 |
|
haby0
|
9e63aa9d84
|
Update query
|
2021-09-14 21:12:49 +08:00 |
|
Erik Krogh Kristensen
|
b936a04826
|
add some fitting CWEs to existing queries
|
2021-09-14 14:59:24 +02:00 |
|
Ethan Palm
|
c62a21e04f
|
Apply suggestions from code review
Co-authored-by: Felicity Chapman <felicitymay@github.com>
|
2021-09-14 08:55:46 -04:00 |
|
Erik Krogh Kristensen
|
6d12c4aab1
|
use the correct cwe tags
|
2021-09-14 14:42:23 +02:00 |
|
Anders Schack-Mulligen
|
26eafcb55a
|
Merge pull request #6456 from smowton/smowton/admin/flexjson-unsafe-deserialization
Java: add unsafe-deserialization support for Flexjson
|
2021-09-14 14:33:22 +02:00 |
|
Tom Hvitved
|
f4e2c30d86
|
Merge pull request #291 from github/hvitved/regexp-multiples
Speedup `RegExp::multiples`
|
2021-09-14 14:22:20 +02:00 |
|
Tom Hvitved
|
8ac3dc29e0
|
Speedup RegExp::multiples
Use regexps to perform matching to avoid constructing sub strings.
|
2021-09-14 13:58:24 +02:00 |
|