erik-krogh
|
070468ab68
|
fix performance
|
2023-03-21 15:19:38 +01:00 |
|
erik-krogh
|
34fe1a8f5e
|
use SSA in the GetLaterAccess module
|
2023-03-21 15:19:15 +01:00 |
|
Tony Torralba
|
956f991b8d
|
Merge pull request #12603 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2023-03-21 10:11:51 +01:00 |
|
Tony Torralba
|
1f991807d4
|
Merge pull request #12366 from github/java/update-mad-decls-after-triage-2023-03-02T12-08-59
Java: Update MaD Declarations after Triage
|
2023-03-21 09:40:03 +01:00 |
|
Jeroen Ketema
|
4e752369c5
|
Merge pull request #12598 from jketema/default-config
C++: Adjust the internals of default taint tracking to use `DataFlow::ConfigSig`
|
2023-03-21 08:59:27 +01:00 |
|
Erik Krogh Kristensen
|
cc46d7fef3
|
Merge pull request #12605 from github/dependabot/cargo/ql/serde-1.0.158
Bump serde from 1.0.157 to 1.0.158 in /ql
|
2023-03-21 08:20:13 +01:00 |
|
dependabot[bot]
|
7420e90a46
|
Bump serde from 1.0.157 to 1.0.158 in /ql
Bumps [serde](https://github.com/serde-rs/serde) from 1.0.157 to 1.0.158.
- [Release notes](https://github.com/serde-rs/serde/releases)
- [Commits](https://github.com/serde-rs/serde/compare/v1.0.157...v1.0.158)
---
updated-dependencies:
- dependency-name: serde
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-03-21 04:06:18 +00:00 |
|
github-actions[bot]
|
6598cc44ee
|
Add changed framework coverage reports
|
2023-03-21 00:15:33 +00:00 |
|
Jeroen Ketema
|
7cdd2b69c9
|
C++: Adjust the internals of default taint tracking to use DataFlow::ConfigSig
|
2023-03-20 18:58:16 +01:00 |
|
AlexDenisov
|
43b3f379e9
|
Merge pull request #12596 from github/redsun82/swift-do-not-print-labels-in-function-types
Swift: remove labels from function type printing
|
2023-03-20 18:01:02 +01:00 |
|
Edward Minnix III
|
ac58299d9e
|
Merge pull request #12541 from egregius313/egregius313/refactor-queries-to-new-dataflow-api
Java: Refactor more queries to the new DataFlow module API
|
2023-03-20 12:24:26 -04:00 |
|
Tony Torralba
|
1258812428
|
Fix Argument[this]
|
2023-03-20 17:13:44 +01:00 |
|
Tony Torralba
|
f685b93379
|
Add change note
|
2023-03-20 17:09:48 +01:00 |
|
Tony Torralba
|
a66b7ed54a
|
Fix incorrect model, add missing model
|
2023-03-20 17:09:48 +01:00 |
|
Stephan Brandauer
|
0cab45e4b9
|
update old data to current standard (stream creation arg is a sink)
|
2023-03-20 17:09:48 +01:00 |
|
Stephan Brandauer
|
8802fbdfe7
|
Update java/ql/lib/ext/java.nio.file.model.yml
Co-authored-by: Tony Torralba <atorralba@users.noreply.github.com>
|
2023-03-20 17:09:48 +01:00 |
|
Stephan Brandauer
|
bc227179c7
|
Update java/ql/lib/ext/org.geogebra.web.full.main.model.yml
Co-authored-by: Tony Torralba <atorralba@users.noreply.github.com>
|
2023-03-20 17:09:48 +01:00 |
|
Tony Torralba
|
bc99a44f3a
|
Apply suggestions from code review
|
2023-03-20 17:09:48 +01:00 |
|
Stephan Brandauer
|
12bb0d98c0
|
move toFile back to its original location
|
2023-03-20 17:09:48 +01:00 |
|
Stephan Brandauer
|
4761c3a328
|
remove duplicates
|
2023-03-20 17:09:48 +01:00 |
|
Stephan Brandauer
|
bd21dc9460
|
remove nonexploitable sinks
|
2023-03-20 17:09:48 +01:00 |
|
Stephan Brandauer
|
b7ce0c2d96
|
fix: taint flow of ctor goes to Argument[-1], instead of ReturnValue
|
2023-03-20 17:09:48 +01:00 |
|
Stephan Brandauer
|
2236db43ec
|
sort the changed MaD declarations
|
2023-03-20 17:09:46 +01:00 |
|
Stephan Brandauer
|
74e261738f
|
remove predicate
|
2023-03-20 17:06:40 +01:00 |
|
Stephan Brandauer
|
ec1762e015
|
Update MaD Declarations after Triage
|
2023-03-20 17:06:37 +01:00 |
|
Tony Torralba
|
fa60fa0ae2
|
Merge pull request #12572 from github/java/update-mad-decls-after-triage-2023-03-17T15-01-35
Java: Update MaD Declarations after Triage
|
2023-03-20 17:02:27 +01:00 |
|
Paolo Tranquilli
|
aaea976cf2
|
Swift: remove labels from function type printing
|
2023-03-20 16:43:34 +01:00 |
|
Anders Schack-Mulligen
|
3876e4335f
|
Merge pull request #12420 from kaspersv/kaspersv/dataflow-remove-alias-preds
Dataflow: Remove revFlowAlias and revFlowApAlias predicates
|
2023-03-20 16:30:15 +01:00 |
|
Alex Ford
|
be163cfc38
|
Merge pull request #12311 from maikypedia/maikypedia/ruby-ssti
Ruby: Add Server Side Template Injection query
|
2023-03-20 15:26:27 +00:00 |
|
Michael Nebel
|
17b3383043
|
Merge pull request #12556 from michaelnebel/java/argumentthis
Java: Argument[-1] -> Argument[this]
|
2023-03-20 15:59:59 +01:00 |
|
Erik Krogh Kristensen
|
a9d40d39d9
|
Merge pull request #12550 from erik-krogh/useNumberUtil
Java/Python: use Number.qll to parse hex numbers in regex parsing
|
2023-03-20 15:50:31 +01:00 |
|
Erik Krogh Kristensen
|
0f813ce2e8
|
Merge pull request #12543 from erik-krogh/reg-perf
ReDoS: restrict the edges considered in polynomial-redos for complex regular expressions
|
2023-03-20 15:48:35 +01:00 |
|
Jeroen Ketema
|
c56c1cbb62
|
Merge pull request #12588 from jketema/boost-config
C++: Refactor `BoostorgAsio` to use `DataFlow::ConfigSig`
|
2023-03-20 15:31:35 +01:00 |
|
yoff
|
6639e5a97b
|
Merge pull request #12590 from yoff/python/patch-uninitialized-local
Python: Patch uninitialized local query
|
2023-03-20 15:11:14 +01:00 |
|
yoff
|
17c9ba9872
|
Merge pull request #12464 from yoff/python/add-test-captured-in-collection
python: add test for captured variables in lists
|
2023-03-20 15:01:58 +01:00 |
|
Rasmus Lerchedahl Petersen
|
ed15cce31f
|
python: add change note
|
2023-03-20 14:22:58 +01:00 |
|
Chuan-kai Lin
|
8c738b77a3
|
Merge pull request #12574 from cklin/document-upgrade-query-predicates
Document upgrade query predicates
|
2023-03-20 06:16:34 -07:00 |
|
Rasmus Lerchedahl Petersen
|
b042c60ca3
|
python: remove outdated comment
|
2023-03-20 14:13:48 +01:00 |
|
Stephan Brandauer
|
39726a54ec
|
fix suggestion
|
2023-03-20 14:12:46 +01:00 |
|
Rasmus Lerchedahl Petersen
|
72e97918e9
|
python: format
|
2023-03-20 14:11:10 +01:00 |
|
Jeroen Ketema
|
bbe95367d6
|
C++: Simplify SslContextCallMake
|
2023-03-20 14:00:03 +01:00 |
|
Geoffrey White
|
a19579d21b
|
Merge pull request #12587 from geoffw0/finishbitwise
Swift: Remove special case for bitwise operations
|
2023-03-20 12:59:31 +00:00 |
|
Jeroen Ketema
|
2968c12e12
|
Merge pull request #12583 from jketema/move-print
C++: Move SsaConsistency to its own file
|
2023-03-20 13:41:29 +01:00 |
|
Jeroen Ketema
|
9997326804
|
C++: Refactor BoostorgAsio to use DataFlow::ConfigSig
|
2023-03-20 13:37:18 +01:00 |
|
Rasmus Lerchedahl Petersen
|
5f438e433d
|
python: exclude nonlocals from query
|
2023-03-20 13:34:39 +01:00 |
|
Kasper Svendsen
|
1d2f1b6ae6
|
Address comments
|
2023-03-20 13:34:14 +01:00 |
|
Ed Minnix
|
83b0d073f0
|
Fix typo in QLDoc
|
2023-03-20 08:11:01 -04:00 |
|
Ed Minnix
|
1c661fd3ac
|
Add missing QLDocs
|
2023-03-20 08:10:07 -04:00 |
|
Kasper Svendsen
|
e0e3a1d621
|
Dataflow: remove revFlowApAlias trick
|
2023-03-20 13:04:13 +01:00 |
|
Rasmus Lerchedahl Petersen
|
9b7a20f4ad
|
python: add example showing FP
|
2023-03-20 13:03:26 +01:00 |
|