CodeQL CI
|
6bdd7df810
|
Merge pull request #6002 from erik-krogh/history
Approved by asgerf
|
2021-06-08 13:17:38 -07:00 |
|
CodeQL CI
|
a02f96d660
|
Merge pull request #6043 from erik-krogh/serialize-javascript-typo
Approved by asgerf
|
2021-06-08 12:18:52 -07:00 |
|
CodeQL CI
|
169e67cbb8
|
Merge pull request #5990 from erik-krogh/prettier
Approved by asgerf
|
2021-06-08 12:17:24 -07:00 |
|
CodeQL CI
|
fec39857fa
|
Merge pull request #6015 from erik-krogh/resolve
Approved by asgerf
|
2021-06-08 04:15:19 -07:00 |
|
CodeQL CI
|
6279c67949
|
Merge pull request #5901 from erik-krogh/regFP
Approved by asgerf
|
2021-06-08 04:14:06 -07:00 |
|
Erik Krogh Kristensen
|
4b98af0c2b
|
fix typo in prettier qldoc
Co-authored-by: Asger F <asgerf@github.com>
|
2021-06-08 13:13:33 +02:00 |
|
Erik Krogh Kristensen
|
ba6d504746
|
fix typo in SerializeJavascriptSanitizer qldoc
|
2021-06-08 13:12:23 +02:00 |
|
Erik Krogh Kristensen
|
8b4c3c4462
|
refactor ValidationCall back to a CallNode
|
2021-06-08 11:18:49 +02:00 |
|
CodeQL CI
|
561c8d0e1a
|
Merge pull request #6033 from erik-krogh/serverlessLib
Approved by asgerf
|
2021-06-08 01:44:40 -07:00 |
|
CodeQL CI
|
95b591d72b
|
Merge pull request #6025 from erik-krogh/serve
Approved by asgerf
|
2021-06-08 01:42:38 -07:00 |
|
Erik Krogh Kristensen
|
b1d7c61d8e
|
add missing qldoc
|
2021-06-08 09:56:32 +02:00 |
|
Erik Krogh Kristensen
|
1ad08677c2
|
model serve-handler in js/exposure-of-private-files
|
2021-06-08 09:52:56 +02:00 |
|
Erik Krogh Kristensen
|
be7abede22
|
add model for the joi library
|
2021-06-07 20:04:17 +02:00 |
|
Erik Krogh Kristensen
|
7f09edcf59
|
add change note
|
2021-06-07 17:25:18 +02:00 |
|
Erik Krogh Kristensen
|
bcf08e6472
|
add remote flow source for the serverless library
|
2021-06-07 17:19:19 +02:00 |
|
Erik Krogh Kristensen
|
09a2c055a7
|
add test for the serverless express API
|
2021-06-07 16:50:01 +02:00 |
|
Asger Feldthaus
|
4cf3c11e83
|
JS: Add lines of user code summary query
|
2021-06-07 16:41:59 +02:00 |
|
Erik Krogh Kristensen
|
a63b0b28d4
|
refactor the history library model, add support for the global variable
|
2021-06-07 15:42:13 +02:00 |
|
Erik Krogh Kristensen
|
5419143e72
|
remove createHashHistory from the history sink
|
2021-06-07 15:24:59 +02:00 |
|
Erik Krogh Kristensen
|
5961dd1459
|
add another test for the resolve library
|
2021-06-06 22:54:12 +02:00 |
|
Erik Krogh Kristensen
|
0adc001df0
|
add taint-step for serialize-javascript
|
2021-06-06 22:48:53 +02:00 |
|
Erik Krogh Kristensen
|
dd2fe2a489
|
add the resolve library as a sink to js/path-injection
|
2021-06-06 22:04:32 +02:00 |
|
Erik Krogh Kristensen
|
46f90006c2
|
add model for whatwg-fetch
|
2021-06-04 13:13:13 +02:00 |
|
Erik Krogh Kristensen
|
d30f53a21a
|
add change note
|
2021-06-03 12:35:39 +02:00 |
|
Erik Krogh Kristensen
|
608a0314df
|
add location reads from the history libary as client-side remote flow
|
2021-06-03 12:33:25 +02:00 |
|
Erik Krogh Kristensen
|
e543c6c665
|
add a js/client-side-unvalidated-url-redirection sink for the history library
|
2021-06-03 12:23:05 +02:00 |
|
CodeQL CI
|
ffad65be40
|
Merge pull request #5993 from erik-krogh/lib-debug
Approved by esbena
|
2021-06-03 01:38:57 -07:00 |
|
CodeQL CI
|
60fb1a3b59
|
Merge pull request #5995 from erik-krogh/webpack-merge
Approved by esbena
|
2021-06-03 01:38:08 -07:00 |
|
CodeQL CI
|
7663095b57
|
Merge pull request #5948 from erik-krogh/fixRandom
Approved by esbena
|
2021-06-03 01:37:23 -07:00 |
|
CodeQL CI
|
40b6c85341
|
Merge pull request #5972 from erik-krogh/ts43
Approved by esbena
|
2021-06-03 01:35:58 -07:00 |
|
Erik Krogh Kristensen
|
3bda1f2e26
|
update expected test output
|
2021-06-03 00:43:54 +02:00 |
|
Erik Krogh Kristensen
|
143bf9de14
|
add change note
|
2021-06-02 23:48:29 +02:00 |
|
Erik Krogh Kristensen
|
48ab630559
|
model webpack-merge as an extend call
|
2021-06-02 23:43:53 +02:00 |
|
Erik Krogh Kristensen
|
185811ee22
|
make MongooseFunction abstract
|
2021-06-02 23:23:30 +02:00 |
|
Erik Krogh Kristensen
|
431c995131
|
add support for the debug library
|
2021-06-02 23:11:15 +02:00 |
|
Erik Krogh Kristensen
|
69d6c74e7e
|
fix typescript version
|
2021-06-02 21:56:47 +02:00 |
|
Erik Krogh Kristensen
|
1e19da155c
|
move TaintedPath sink into TaintedPathCustomizations to avoid side-effects
|
2021-06-02 21:25:48 +02:00 |
|
Erik Krogh Kristensen
|
27ff256b0e
|
add change note
|
2021-06-02 15:34:01 +02:00 |
|
Erik Krogh Kristensen
|
788c5ba701
|
add support for the prettier API
|
2021-06-02 15:33:08 +02:00 |
|
Ishaq Mohammed
|
96150a455d
|
Update javascript/ql/src/Security/CWE-352/MissingCsrfMiddleware.qhelp
Co-authored-by: Erik Krogh Kristensen <erik-krogh@github.com>
|
2021-06-01 13:47:43 +05:30 |
|
Ishaq Mohammed
|
975355de4a
|
Adding reference link for csurf
|
2021-06-01 13:41:25 +05:30 |
|
Erik Krogh Kristensen
|
85bd8f1020
|
add change-note for TypeScript 4.3
|
2021-05-31 13:08:52 +02:00 |
|
Erik Krogh Kristensen
|
e6b1c61e81
|
add tests for TypeScript 4.3
|
2021-05-31 13:08:43 +02:00 |
|
Erik Krogh Kristensen
|
2cc2d116bc
|
bump extractor version
|
2021-05-31 13:08:24 +02:00 |
|
Erik Krogh Kristensen
|
35d7fda5e2
|
update typescript to 4.3 in the extractor
|
2021-05-31 13:08:09 +02:00 |
|
Erik Krogh Kristensen
|
c70651b6fe
|
always have arrayLikeElement as TypeTracking properties
|
2021-05-25 11:48:54 +02:00 |
|
CodeQL CI
|
131c08e436
|
Merge pull request #5939 from max-schaefer/js/set-constructor-args
Approved by esbena
|
2021-05-21 05:02:27 -07:00 |
|
Max Schaefer
|
6e34784fc5
|
Add new experimental query MultipleArgumentsToSetConstructor.
|
2021-05-21 09:54:41 +01:00 |
|
CodeQL CI
|
9bdfdb02d3
|
Merge pull request #5916 from erik-krogh/scriptSink
Approved by esbena
|
2021-05-19 03:46:17 -07:00 |
|
Erik Krogh Kristensen
|
9a1f80aa93
|
accept updated test output for express test
|
2021-05-18 22:23:29 +02:00 |
|