Commit Graph

78507 Commits

Author SHA1 Message Date
Mathias Vorreiter Pedersen
4518f18b9f PS: Delete a cycle in the upgrade script. 2025-04-18 12:41:13 +01:00
Mathias Vorreiter Pedersen
e7e88d3946 PS: Add upgrade script from some unknown dbscheme to the dbscheme that existed when Mathias joined Microsoft 2025-04-18 12:40:58 +01:00
Chanel
fe7d8ff61f Merge pull request #201 from microsoft/powershell-injectionhunter-port
Powershell Command Injection query updates
2025-04-17 11:03:19 -07:00
Chanel Young
12b918e900 pr feedback: removed toString, updated .expected 2025-04-17 10:39:42 -07:00
Chanel Young
ed553d393b merged work into CommandInjection query 2025-04-16 14:32:30 -07:00
Chanel Young
2266cd2eb8 moved folder, added tests/docs 2025-04-16 12:13:07 -07:00
Chanel Young
50a771edee Merge branch 'main' into powershell-injectionhunter-port 2025-04-16 11:19:26 -07:00
Chanel Young
5f643509f0 added script block, expandstring sinks, moved sanitizers to separate file 2025-04-16 11:18:02 -07:00
Chanel
c9b1356853 Merge pull request #200 from microsoft/files-reads-as-flow-sources
PS: Handle more flow sources
2025-04-16 10:03:44 -07:00
Mathias Vorreiter Pedersen
396a283da9 PS: Add tests for flow sources. 2025-04-15 22:43:21 +01:00
Mathias Vorreiter Pedersen
826e6a9ee8 PS: Add an inline expectations test library for flow sources. 2025-04-15 22:43:19 +01:00
Mathias Vorreiter Pedersen
dcc127832e PS: Make remote flow sources flow sources. 2025-04-15 22:43:18 +01:00
Mathias Vorreiter Pedersen
fa3fc4a0c3 PS: Fix more problems in MaD rows for sources. 2025-04-15 22:43:16 +01:00
Mathias Vorreiter Pedersen
a146630a09 PS: Delete redundant files. 2025-04-15 22:43:14 +01:00
Mathias Vorreiter Pedersen
43d9c701f8 PS: Rename Field and Property to Member. 2025-04-15 22:43:03 +01:00
Mathias Vorreiter Pedersen
f38948764c PS: Make type names lower case. 2025-04-15 22:36:31 +01:00
Mathias Vorreiter Pedersen
993511735a PS: Make method names lower case. 2025-04-15 22:02:46 +01:00
Chanel Young
b4d8673a38 Merge branch 'main' of https://github.com/microsoft/codeql into powershell-injectionhunter-port 2025-04-14 15:18:37 -07:00
Mathias Vorreiter Pedersen
6455992402 PS: Add two more flow sources. 2025-04-10 20:44:11 +01:00
Mathias Vorreiter Pedersen
3d18175885 PS: Make it possible to specify a named argument that must be present in MaD. 2025-04-10 20:42:50 +01:00
Mathias Vorreiter Pedersen
43de3a131b PS: Use the existing MaD rows to model file reads as flow sources. 2025-04-10 20:25:17 +01:00
Chanel
1637df0a3f Merge pull request #199 from microsoft/fix-top-level-arguments
PS: Fix a couple of missing local flow sources
2025-04-10 11:18:31 -07:00
Mathias Vorreiter Pedersen
4aa9f85b5d PS: Accept test changes. 2025-04-10 19:02:54 +01:00
Mathias Vorreiter Pedersen
9adf028d41 PS: Fix environment variables. 2025-04-10 19:02:07 +01:00
Mathias Vorreiter Pedersen
bf9ed3bcb7 PS: Accept test changes. 2025-04-10 18:52:27 +01:00
Mathias Vorreiter Pedersen
6084789f09 PS: Fix the top level arguments after the AST cleanup. 2025-04-10 18:50:06 +01:00
Mathias Vorreiter Pedersen
793fd5eb7e PS: Delete a redundant file. 2025-04-10 18:49:45 +01:00
dilanbhalla
5abde74f0c Merge pull request #198 from microsoft/dilan/sync-main-bugs-7
Sync Main Error Handling Improvement
2025-04-10 10:34:55 -07:00
dilanbhalla
4628c187bd Update sync-main.yml 2025-04-10 10:26:00 -07:00
Chanel
419de4fd22 Merge pull request #196 from microsoft/autogenerate-lots-of-models
PS: Add autogenerated summary models
2025-04-09 11:16:36 -07:00
Mathias Vorreiter Pedersen
b55ee68a99 Merge branch 'main' into autogenerate-lots-of-models 2025-04-09 11:12:09 -07:00
dilanbhalla
89ddb30a96 Merge pull request #197 from microsoft/auto/sync-main-pr
Sync Main (autogenerated)
2025-04-09 10:46:13 -07:00
dilanbhalla
0f034b32e0 Merge pull request #194 from microsoft/dilan/sync-main-bugs-6
Sync Main: More Misc Bugs
2025-04-09 10:46:07 -07:00
dilanbhalla
c5b024a9dd Update sync-main.yml 2025-04-09 10:26:10 -07:00
dilanbhalla
b8b4e44e81 Update sync-main.yml 2025-04-09 10:24:00 -07:00
dilanbhalla
86b3eaeb64 Merge branch 'main' into dilan/sync-main-bugs-6 2025-04-09 10:18:16 -07:00
dilanbhalla
0d97cd6be6 Merge branch 'main' of https://github.com/microsoft/codeql into auto/sync-main-pr 2025-04-09 17:17:29 +00:00
dilanbhalla
88a7c3a63d Update sync-main.yml 2025-04-09 10:16:42 -07:00
dilanbhalla
e7edf1bab9 Update sync-main.yml 2025-04-09 10:13:45 -07:00
dilanbhalla
a93d65b2d1 Update sync-main.yml 2025-04-09 10:11:23 -07:00
Mathias Vorreiter Pedersen
f8207fa92a PS: Add a testcase to demonstrate flow through Join-String. 2025-04-09 15:20:41 +01:00
Mathias Vorreiter Pedersen
ebb91dceb7 PS: Add a few more models after fixing MaD for Element content. 2025-04-09 15:20:39 +01:00
Mathias Vorreiter Pedersen
6de4765fe6 PS: Support implicit imports in API graphs. 2025-04-09 15:20:38 +01:00
Mathias Vorreiter Pedersen
a5afc3c582 PS: Flow through pipelines. 2025-04-09 15:20:36 +01:00
Mathias Vorreiter Pedersen
5f12d7c970 PS: Taint flow through all calls to 'toString'. 2025-04-09 15:20:35 +01:00
Mathias Vorreiter Pedersen
763effb50d PS: Add more models and support pipeline parameters in MaD. 2025-04-09 15:20:33 +01:00
Mathias Vorreiter Pedersen
f38c5f5b4f PS: Add lots of models. 2025-04-09 15:20:32 +01:00
Mathias Vorreiter Pedersen
02c027d9f6 Merge pull request #183 from microsoft/hashcons-for-csharp
C#: Add a hash-cons library for C#
2025-04-09 04:21:50 -07:00
Mathias Vorreiter Pedersen
7612ef922f Merge pull request #186 from microsoft/powershell-automatic-variables-as-member-edges
PS: Fix more Chanel-reported PowerShell issues
2025-04-09 04:21:38 -07:00
dilanbhalla
79909e93a2 Update sync-main.yml 2025-04-08 16:34:50 -07:00