Michael Nebel
|
085d3c85cd
|
Merge pull request #20425 from michaelnebel/csharp/basicextractoroverlay
C#: Overlay extraction support.
|
2025-11-12 15:25:57 +01:00 |
|
Owen Mansel-Chan
|
54ff206fde
|
Merge pull request #20822 from github/dependabot/go_modules/go/extractor/extractor-dependencies-b217d21568
Bump golang.org/x/mod from 0.29.0 to 0.30.0 in /go/extractor in the extractor-dependencies group
|
2025-11-12 09:27:06 +00:00 |
|
Paolo Tranquilli
|
7c31cf17d8
|
Merge pull request #20815 from github/update-ripunzip
Update ripunzip binaries to version v2.0.3
|
2025-11-12 10:25:59 +01:00 |
|
dependabot[bot]
|
c88952423e
|
Bump golang.org/x/mod
Bumps the extractor-dependencies group in /go/extractor with 1 update: [golang.org/x/mod](https://github.com/golang/mod).
Updates `golang.org/x/mod` from 0.29.0 to 0.30.0
- [Commits](https://github.com/golang/mod/compare/v0.29.0...v0.30.0)
---
updated-dependencies:
- dependency-name: golang.org/x/mod
dependency-version: 0.30.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: extractor-dependencies
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2025-11-12 03:08:31 +00:00 |
|
Paolo Tranquilli
|
3483007b2a
|
Ripunzip: use new archives
|
2025-11-11 17:44:12 +01:00 |
|
github-actions[bot]
|
d5734af555
|
Update ripunzip binaries to version v2.0.3
|
2025-11-11 13:40:02 +00:00 |
|
Paolo Tranquilli
|
0419667460
|
Merge pull request #20802 from github/redsun82/ripunzip
CI: make `build-ripunzip.yml` auto-create update PR
|
2025-11-11 14:34:39 +01:00 |
|
Michael B. Gale
|
f1076b9eb1
|
Merge pull request #20813 from github/post-release-prep/codeql-cli-2.23.5
Post-release preparation for codeql-cli-2.23.5
|
2025-11-11 13:13:14 +00:00 |
|
Henry Mercer
|
d3dc7908f8
|
Merge branch 'main' into post-release-prep/codeql-cli-2.23.5
|
2025-11-11 12:55:58 +00:00 |
|
github-actions[bot]
|
466a6f330a
|
Post-release preparation for codeql-cli-2.23.5
|
2025-11-11 12:21:57 +00:00 |
|
Paolo Tranquilli
|
e2671da05f
|
Fix build-ripunzip.yml archive step on macos
|
2025-11-11 13:01:39 +01:00 |
|
Paolo Tranquilli
|
104f0e3a02
|
Fix build-ripunzip.yml archive step on windows
|
2025-11-11 12:51:30 +01:00 |
|
Michael B. Gale
|
e5fa4a6dca
|
Merge pull request #20812 from github/release-prep/2.23.5
Release preparation for version 2.23.5
codeql-cli/v2.23.5
|
2025-11-11 11:46:37 +00:00 |
|
Paolo Tranquilli
|
99baf98897
|
Fix build-ripunzip.yml
|
2025-11-11 12:46:28 +01:00 |
|
Michael B. Gale
|
b4fed5bf58
|
Revert C++ range analysis change note
|
2025-11-11 11:38:54 +00:00 |
|
Michael B. Gale
|
ac9a29701e
|
C#: Minor changelog improvements
|
2025-11-11 11:38:20 +00:00 |
|
Napalys Klicius
|
d122534398
|
Merge pull request #20671 from github/napalys/adjust_query_severity
Adjust query severity ratings
|
2025-11-11 12:37:31 +01:00 |
|
github-actions[bot]
|
e4f25c9a13
|
Release preparation for version 2.23.5
|
2025-11-11 11:33:33 +00:00 |
|
Paolo Tranquilli
|
47f2617b4d
|
Use other compression method for ripunzip
|
2025-11-11 12:07:19 +01:00 |
|
Paolo Tranquilli
|
295744eb36
|
Set permissions
|
2025-11-11 12:00:30 +01:00 |
|
Paolo Tranquilli
|
29a2f96cc7
|
Merge branch 'main' into redsun82/ripunzip
|
2025-11-11 11:57:29 +01:00 |
|
Geoffrey White
|
8624f9c660
|
Merge pull request #20749 from github/copilot/add-secure-cookie-test-cases
Add test coverage for actix-web, poem, and http-types cookie secure attribute
|
2025-11-11 09:26:26 +00:00 |
|
Michael B. Gale
|
5b1e651803
|
Merge pull request #20803 from github/revert-20778-release-prep/2.23.4
Revert "Release preparation for version 2.23.4"
|
2025-11-11 00:06:17 +00:00 |
|
Michael B. Gale
|
8ba29a7821
|
Revert "Release preparation for version 2.23.4"
|
2025-11-10 17:13:28 +00:00 |
|
Joe Farebrother
|
eda23902ba
|
Merge pull request #20692 from joefarebrother/csharp-secure-cookie-promote
C#: Promote insecure cookie and httponly cookie queries
|
2025-11-10 15:02:45 +00:00 |
|
Paolo Tranquilli
|
02e696d9cc
|
Update .github/workflows/build-ripunzip.yml
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2025-11-10 15:58:43 +01:00 |
|
Michael Nebel
|
0541dccc78
|
C#: Add discarding for ASP elements.
|
2025-11-10 15:44:17 +01:00 |
|
Michael Nebel
|
3492811cda
|
C#: Add XML overlay tests.
|
2025-11-10 15:38:29 +01:00 |
|
Michael Nebel
|
d6b7424e2c
|
C#: Add the same strategy in as in Java for XML element discarding.
|
2025-11-10 15:38:26 +01:00 |
|
Joe Farebrother
|
c9a559a6d8
|
Restrict Append calls to string arguments
|
2025-11-10 14:14:06 +00:00 |
|
Joe Farebrother
|
b813c13462
|
Restrict sinks to fix performance
|
2025-11-10 14:14:01 +00:00 |
|
Joe Farebrother
|
7d5388fb68
|
Update integration tests
|
2025-11-10 14:13:56 +00:00 |
|
Joe Farebrother
|
544446bb81
|
Minor comment update
|
2025-11-10 14:13:51 +00:00 |
|
Joe Farebrother
|
0a085dccbe
|
Fix qhelp
|
2025-11-10 14:13:46 +00:00 |
|
Joe Farebrother
|
d29fc9d2d0
|
Add changenote
|
2025-11-10 14:13:41 +00:00 |
|
Joe Farebrother
|
d8eeae781b
|
Add additional test case for httponly cookies set to true
|
2025-11-10 14:13:36 +00:00 |
|
Paolo Tranquilli
|
a6fda6ba73
|
CI: make build-ripunzip.yml auto-create update PR
|
2025-11-10 15:13:35 +01:00 |
|
Joe Farebrother
|
c734e74c76
|
Update qhelp
|
2025-11-10 14:13:31 +00:00 |
|
Joe Farebrother
|
cdd1edd53b
|
Remove experimental versions
|
2025-11-10 14:13:26 +00:00 |
|
Joe Farebrother
|
6ba7ece2f0
|
Add httponly tests for aspnet core + fixes
|
2025-11-10 14:13:19 +00:00 |
|
Joe Farebrother
|
ae0b997c31
|
Add system.web tests for httponly cookie
|
2025-11-10 14:13:14 +00:00 |
|
Joe Farebrother
|
a9b97f7065
|
Add tests for insecure cookie using system.web
|
2025-11-10 14:13:09 +00:00 |
|
Joe Farebrother
|
bb010fee6b
|
Add tests for secure cookie using aspnetcore
|
2025-11-10 14:13:04 +00:00 |
|
Joe Farebrother
|
3cdfa8e0ac
|
Update comments and names
|
2025-11-10 14:12:57 +00:00 |
|
Joe Farebrother
|
a87a03cfa8
|
Move to main query pack
|
2025-11-10 14:12:48 +00:00 |
|
Joe Farebrother
|
71ad5a340f
|
Refactor httponly cookie query
|
2025-11-10 14:12:43 +00:00 |
|
Joe Farebrother
|
a1864edcb6
|
Presere behaviour for insecure cookie constructor
|
2025-11-10 14:12:36 +00:00 |
|
Joe Farebrother
|
d3ea6758c3
|
Simplify checks for assignments to false to creation case
|
2025-11-10 14:12:30 +00:00 |
|
Joe Farebrother
|
7bb65fef1b
|
Refactor secure cookie query
|
2025-11-10 14:12:24 +00:00 |
|
Mathias Vorreiter Pedersen
|
fd8bf990f6
|
Merge pull request #20783 from MathiasVP/fix-cp-in-external-flow
C++: Fix cartesian-like join in `ExternalFlow.qll`
|
2025-11-10 13:40:34 +00:00 |
|