Jami Cogswell
|
33afcd75f1
|
Java: add subtype-related comments, update some empty-string signatures
|
2023-04-13 09:12:54 -04:00 |
|
Jami Cogswell
|
2a23f8766e
|
Java: add tests for org.apache.hc.client5.http.async.methods.model.yml; resolve conflicts
|
2023-04-13 09:12:54 -04:00 |
|
Jami Cogswell
|
e89df255e3
|
Java: add subtype-related comments on org.apache.hc.client5.http.async.methods models
|
2023-04-13 09:12:54 -04:00 |
|
Jami Cogswell
|
4ab184fc7d
|
Java: switch HttpHost from sink to summary; resolve conflicts
|
2023-04-13 09:12:54 -04:00 |
|
Jami Cogswell
|
4ed101fa26
|
Java: remove some comments
|
2023-04-13 09:12:54 -04:00 |
|
Jami Cogswell
|
a991f87728
|
Java: add some host sinks
|
2023-04-13 09:12:54 -04:00 |
|
Jami Cogswell
|
68fe486c05
|
Java: remove typo FP, boolean arg is not a sink
|
2023-04-13 09:12:54 -04:00 |
|
Jami Cogswell
|
60dab3d779
|
Java: add models from client version 4; resolve conflicts
|
2023-04-13 09:12:42 -04:00 |
|
Jami Cogswell
|
68391acc98
|
Java: add models from core version 4; resolve conflict
|
2023-04-13 09:06:28 -04:00 |
|
Jami Cogswell
|
de4cfc3239
|
Java: remove typo sink, this api is covered by the model for org.apache.http.client.methods.HttpRequestBase.setURI instead
|
2023-04-13 09:06:28 -04:00 |
|
Jami Cogswell
|
a3976305ca
|
Java: add initial ssrf heuristic models for apache httpcomponents version 5
|
2023-04-13 09:06:28 -04:00 |
|
Michael Nebel
|
52bc43b22b
|
Merge pull request #12595 from michaelnebel/enhanceprovenance
Java/C# : Enhance provenance.
|
2023-04-13 14:27:53 +02:00 |
|
Alex Ford
|
8c46bfd051
|
Merge pull request #12816 from github/rc/3.9
Merge `rc/3.9` into `main`
|
2023-04-13 12:35:41 +01:00 |
|
Tony Torralba
|
4c6df3fdb9
|
Merge pull request #12813 from atorralba/atorralba/java/sensitive-expr-fix-and-tests
Java: Add tests for SensitiveActions and fix getCommonSensitiveInfoRegex
|
2023-04-13 13:13:37 +02:00 |
|
Tony Torralba
|
d7feaf4098
|
Merge pull request #12685 from atorralba/atorralba/java/command-injection-mad
Java: Add command-injection sink kind and refactor command injection queries
|
2023-04-13 11:38:14 +02:00 |
|
Tony Torralba
|
4f2ffccc20
|
Improve change note
|
2023-04-13 11:14:57 +02:00 |
|
Tony Torralba
|
99b0624e8b
|
Add change note
|
2023-04-13 10:35:59 +02:00 |
|
Tony Torralba
|
485709a133
|
Fix getCommonSensitiveInfoRegex
|
2023-04-13 10:33:03 +02:00 |
|
Tony Torralba
|
84971c8687
|
Add SensitiveActions tests
|
2023-04-13 10:32:23 +02:00 |
|
Michael Nebel
|
169d8d5cf9
|
Java: All ai-generated models have been manually verified.
|
2023-04-13 09:21:06 +02:00 |
|
Michael Nebel
|
dc8a31f2c5
|
C#/Java: Update dataflow model generator related comments to include provenance.
|
2023-04-13 09:21:06 +02:00 |
|
Michael Nebel
|
de7f486cb1
|
C#/Java: Update model converter queries.
|
2023-04-13 09:21:06 +02:00 |
|
Michael Nebel
|
574f568c26
|
Java: Update model generator expected output.
|
2023-04-13 09:21:06 +02:00 |
|
Michael Nebel
|
df7d58d101
|
Java: Adjust model generator printing to the new provenance.
|
2023-04-13 09:21:06 +02:00 |
|
Michael Nebel
|
6593991c13
|
Java/C#: Update generated models to have provenance df-generated.
|
2023-04-13 09:21:05 +02:00 |
|
Michael Nebel
|
03482e5e59
|
Java/C#: Update the internal documentation.
|
2023-04-13 09:21:05 +02:00 |
|
Michael Nebel
|
54e55e2262
|
Java: Introduce more provenance values.
|
2023-04-13 09:21:04 +02:00 |
|
Michael Nebel
|
efc0650b86
|
Java: Set the provenance default to manual.
|
2023-04-13 09:21:04 +02:00 |
|
Chris Smowton
|
7eefa43f5a
|
Rename and document viableArgParamSpecific to make clear it is a temporary hook.
|
2023-04-12 14:33:46 +01:00 |
|
Chris Smowton
|
4d8ca3d759
|
Add dataflow callback to filter out receiver argument flow to Golang interface dispatch candidates.
Other langauges stub the callback.
|
2023-04-12 14:19:06 +01:00 |
|
github-actions[bot]
|
a55f5ed933
|
Add changed framework coverage reports
|
2023-04-12 00:15:16 +00:00 |
|
Jami
|
b7c7449b08
|
Merge pull request #12739 from jcogs33/jcogs33/add-one-more-top500-model
Java: add summary model for `UnsupportedOperationException(String)` constructor
|
2023-04-11 08:25:36 -04:00 |
|
Tony Torralba
|
075c0f94ac
|
Merge pull request #12785 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2023-04-11 11:34:37 +02:00 |
|
Tony Torralba
|
944bdfde45
|
Apply suggestions from code review
|
2023-04-11 09:47:47 +02:00 |
|
Stephan Brandauer
|
cb8506d51a
|
Update MaD Declarations after Triage
|
2023-04-11 09:25:39 +02:00 |
|
github-actions[bot]
|
bfdfa0b93e
|
Add changed framework coverage reports
|
2023-04-11 00:15:35 +00:00 |
|
Jami Cogswell
|
6a103f5070
|
Java: add change note
|
2023-04-06 10:22:03 -04:00 |
|
Jami Cogswell
|
c4f8a9a2eb
|
Java: update genVsMan query test case; resolve conflict
|
2023-04-06 10:21:53 -04:00 |
|
Jami Cogswell
|
01dd2647d4
|
Java: add test case for yml model
|
2023-04-06 10:19:33 -04:00 |
|
Jami Cogswell
|
6b695434b7
|
Java: add yml model for UnsupportedOperationException; resolve conflict
|
2023-04-06 10:19:19 -04:00 |
|
Jami Cogswell
|
8b0eba78aa
|
Java: add UnsupportedOperationException to topJdkApiName
|
2023-04-06 10:14:36 -04:00 |
|
Jami
|
c55c9f50c9
|
Merge pull request #12680 from jcogs33/jcogs33/metrics-query-refactor-top500
Java: test GeneratedVsManualCoverage query on top 500 JDK APIs
|
2023-04-06 10:07:35 -04:00 |
|
Tony Torralba
|
8686036346
|
Update java/ql/lib/change-notes/2023-03-31-new-models.md
|
2023-04-06 15:25:33 +02:00 |
|
Jami Cogswell
|
cc92936f6a
|
Java: rename stubs directory
|
2023-04-06 08:32:09 -04:00 |
|
Jami Cogswell
|
b534f40b26
|
Java: move TopJdkApis.qll to src directory
|
2023-04-06 08:23:22 -04:00 |
|
Tony Torralba
|
d58d6fe6be
|
Update java/ql/lib/ext/java.net.model.yml
|
2023-04-06 13:58:13 +02:00 |
|
Tony Torralba
|
cdb3d9ea5a
|
Apply suggestions from code review
|
2023-04-06 12:23:50 +02:00 |
|
Stephan Brandauer
|
18801b39c6
|
Update MaD Declarations after Triage
|
2023-04-06 12:23:50 +02:00 |
|
github-actions[bot]
|
a707772222
|
Add changed framework coverage reports
|
2023-04-06 00:15:35 +00:00 |
|
Tony Torralba
|
3f2840bb1b
|
Remove com.hippo models
|
2023-04-05 15:32:53 +02:00 |
|