Geoffrey White
|
1c75729598
|
Swift: Autoformat.
|
2023-04-05 11:08:27 +01:00 |
|
Geoffrey White
|
0d14835feb
|
Swift: Clean up sources / make some of them extendable as well.
|
2023-04-05 11:08:26 +01:00 |
|
Geoffrey White
|
fc5e958c8d
|
Swift: Add extendible sinks, sanitizers etc and use them.
|
2023-04-05 11:08:26 +01:00 |
|
Geoffrey White
|
e62a6a037c
|
Swift: Split encryption queries into three parts (trivial re-organization of existing code).
|
2023-04-03 17:20:34 +01:00 |
|
Ian Lynagh
|
f5a2853ab9
|
Merge pull request #12705 from igfoo/igfoo/integ-extractor-info
Java: Allow keys to be omitted from ExtractorInformation.ql
|
2023-03-30 14:06:41 +01:00 |
|
Jeroen Ketema
|
9173e08805
|
Merge pull request #12714 from jketema/rem-cleanup
C++: Match `SemZeroBound` handling of mul case in rem case
|
2023-03-30 14:25:20 +02:00 |
|
Asger F
|
43174cfe3a
|
Merge pull request #12668 from asgerf/js/jquery-callback-sinks
JS: fix handling of jQuery sinks involving callback
|
2023-03-30 12:42:53 +02:00 |
|
Geoffrey White
|
7729a6bdbf
|
Merge pull request #12509 from geoffw0/typealiasimpl
Swift: Extract type aliases
|
2023-03-30 11:06:14 +01:00 |
|
Mathias Vorreiter Pedersen
|
62bc8074ba
|
Merge pull request #12626 from gsingh93/buffer-access-size-expr
C++: Add getSizeExpr and getSizeMult predicates to BufferAccess
|
2023-03-30 10:49:12 +01:00 |
|
Rasmus Wriedt Larsen
|
decd51b65d
|
Merge pull request #12604 from raulgarciamsft/main
Python: Update `py/azure-storage/unsafe-client-side-encryption-in-use`
|
2023-03-30 11:48:26 +02:00 |
|
Mathias Vorreiter Pedersen
|
0202bafc35
|
Merge pull request #12709 from MathiasVP/disable-rounding-2
C++: Disable floating point rounding in range analysis
|
2023-03-30 10:05:47 +01:00 |
|
Michael Nebel
|
dde37c64ac
|
Merge pull request #12675 from michaelnebel/csharp/refactorflowapi
C#: Re-factor tainttracking configurations to use the new API.
|
2023-03-30 10:54:11 +02:00 |
|
Mathias Vorreiter Pedersen
|
64a08cefd7
|
C++: Add change note.
|
2023-03-30 09:37:27 +01:00 |
|
Rasmus Wriedt Larsen
|
f3937a4a12
|
Python: Update .expected from PostUpdateNode commit
|
2023-03-30 10:17:33 +02:00 |
|
Mathias Vorreiter Pedersen
|
6275a015a4
|
Merge pull request #12708 from MathiasVP/dont-break-ir-cfg-on-vla
C++: Don't produce partial CFGs when using VLAs
|
2023-03-30 09:16:10 +01:00 |
|
Michael Nebel
|
31e352afb0
|
C#: Actually add the deprecated keyword to the deprecated classes.
|
2023-03-30 09:45:49 +02:00 |
|
Jeroen Ketema
|
ade02d80cf
|
C++: Match SemZeroBound handling of mul case in rem case
|
2023-03-30 09:10:55 +02:00 |
|
Paolo Tranquilli
|
aeaeade75e
|
Merge pull request #12706 from github/alexdenisov/consider-non-swift-modules-as-lazy
Swift: consider declarations from non-swift modules as lazy
|
2023-03-30 08:40:53 +02:00 |
|
Raul Garcia
|
cf8a683d7d
|
Merge branch 'main' into main
|
2023-03-29 20:27:03 -07:00 |
|
Raul Garcia
|
05137d0c54
|
Merge pull request #32 from RasmusWL/azure-blob-client
`py/azure-storage/unsafe-client-side-encryption-in-use` updates
|
2023-03-29 20:26:25 -07:00 |
|
Edward Minnix III
|
434b1b35d8
|
Merge pull request #12698 from egregius313/egregius313/java/refactor-commandline-query-and-request-forgery
Java: Refactor CommandLineQuery.qll and RequestForgeryConfig.qll
|
2023-03-29 17:49:51 -04:00 |
|
Tom Hvitved
|
6af973a8a6
|
Merge pull request #12704 from github/hvitved-patch-1
|
2023-03-29 21:18:23 +02:00 |
|
Ed Minnix
|
744f2653f0
|
Add QLdoc for RemoteUserInputToArgumentToExecFlow
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
a3c1d08a59
|
Fix ExecUnescaped
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
25359d2218
|
Deprecate execTainted
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
dcd703f1a9
|
Update to the TaintTracking::Global api
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
bbf7c67f9b
|
Remove unnecessary private markers (CommandLine and Request forgery)
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
0249890747
|
Refactor CommandLineQuery.qll
|
2023-03-29 11:45:09 -04:00 |
|
Gulshan Singh
|
abec99badb
|
C++: Add getSizeExpr and getSizeMult predicates to BufferAccess
|
2023-03-29 08:26:00 -07:00 |
|
Edward Minnix III
|
117a983423
|
Merge pull request #12639 from egregius313/egregius313/java/refactor-injection-queries
Java: Refactor injection queries to new dataflow API
|
2023-03-29 11:02:18 -04:00 |
|
Geoffrey White
|
fcefd03b14
|
Swift: Fill out the upgrade/downgrade scripts.
|
2023-03-29 15:54:08 +01:00 |
|
Geoffrey White
|
d5928e150d
|
Swift: Prepare upgrade/downgrade scripts.
|
2023-03-29 15:51:42 +01:00 |
|
Geoffrey White
|
704e42cf22
|
Swift: Accept integration test changes (not sure what caused this exactly but it looks OK to me).
|
2023-03-29 15:49:44 +01:00 |
|
Geoffrey White
|
8e4c7a9d89
|
Swift: Test expectations.
|
2023-03-29 15:49:36 +01:00 |
|
Geoffrey White
|
4ba8de4802
|
Swift: Update codegen.
|
2023-03-29 15:49:26 +01:00 |
|
Geoffrey White
|
f042195e5c
|
Swift: Connect it up.
|
2023-03-29 15:49:17 +01:00 |
|
Geoffrey White
|
d8703210dd
|
Swift: Extract type aliases.
|
2023-03-29 15:49:12 +01:00 |
|
Mathias Vorreiter Pedersen
|
65c7a504b2
|
C++: Accept test changes.
|
2023-03-29 15:08:50 +01:00 |
|
Jeroen Ketema
|
edfd8715c8
|
Merge pull request #12695 from jketema/swift-configsig
Swift: Refactor a number of queries to use `DataFlow::ConfigSig`
|
2023-03-29 16:07:47 +02:00 |
|
Mathias Vorreiter Pedersen
|
e3e68b7753
|
Merge pull request #12642 from geoffw0/modernstring
Swift: Modernize the swift/string-length-conflation query
|
2023-03-29 14:55:40 +01:00 |
|
Mathias Vorreiter Pedersen
|
27d8f98418
|
C++: Replace 'int' with 'float' in tests and accept test changes.
|
2023-03-29 14:27:37 +01:00 |
|
Mathias Vorreiter Pedersen
|
a2c0e36062
|
C++: Accept test changes.
|
2023-03-29 14:25:05 +01:00 |
|
Mathias Vorreiter Pedersen
|
4d8159c581
|
C++: Disable rounding.
|
2023-03-29 14:23:05 +01:00 |
|
Mathias Vorreiter Pedersen
|
6dd45b31e1
|
Merge pull request #12696 from MathiasVP/range-analysis-of-mul-expr
C++: IR-based range analysis of multiplication
|
2023-03-29 14:05:55 +01:00 |
|
Mathias Vorreiter Pedersen
|
3bd193f721
|
C++: Fix Code Scanning errors.
|
2023-03-29 14:02:34 +01:00 |
|
Mathias Vorreiter Pedersen
|
0e9ed989e0
|
C++: Accept test changes.
|
2023-03-29 14:01:01 +01:00 |
|
Mathias Vorreiter Pedersen
|
fb6e45b6f4
|
C++: Emit a NoOp during CFG construction for VLAs.
|
2023-03-29 13:58:39 +01:00 |
|
Mathias Vorreiter Pedersen
|
d4746e0508
|
C++: Add test with VLA.
|
2023-03-29 13:58:24 +01:00 |
|
Ian Lynagh
|
4fa1bbf018
|
Java: Allow keys to be omitted from ExtractorInformation.ql
This is useful in tests, as some keys contain unstable information.
|
2023-03-29 13:10:17 +01:00 |
|
Alex Denisov
|
069598c9e1
|
Swift: consider declarations from non-swift modules as lazy
This change fixes all of the VALUE_NOT_IN_TYPE errors I'm seeing with
the integration tests on macOS.
|
2023-03-29 14:02:56 +02:00 |
|