Ahmed Farid
|
466f75bad8
|
Update Concepts.qll
|
2022-03-06 23:53:00 +01:00 |
|
Ahmed Farid
|
be7c619ca8
|
Update zipslip_bad.py
|
2022-03-04 00:48:45 +01:00 |
|
Ahmed Farid
|
5e14d89714
|
Update ZipSlip.qll
|
2022-03-03 17:12:06 +01:00 |
|
Ahmed Farid
|
c45b67c316
|
Create zipslip_good.py
|
2022-03-02 18:10:24 +01:00 |
|
Ahmed Farid
|
aef1df122b
|
Create zipslip_bad.py
|
2022-03-02 18:09:45 +01:00 |
|
Ahmed Farid
|
c8f73ec845
|
Create ZipSlip.qlref
|
2022-03-02 18:08:32 +01:00 |
|
Ahmed Farid
|
70c0c7e461
|
Update zipslip_bad.py
|
2022-03-01 00:24:33 +01:00 |
|
Ahmed Farid
|
85bcaa96ce
|
Update Concepts.qll
|
2022-03-01 00:23:06 +01:00 |
|
Ahmed Farid
|
c22b032bbe
|
Update Zip.qll
|
2022-03-01 00:11:33 +01:00 |
|
Ahmed Farid
|
67d3498891
|
Update ZipSlip.ql
|
2022-03-01 00:07:37 +01:00 |
|
Ahmed Farid
|
b29936716d
|
Update Frameworks.qll
|
2022-03-01 00:06:22 +01:00 |
|
Ahmed Farid
|
76bd3317eb
|
Create Zip.qll
|
2022-03-01 00:05:30 +01:00 |
|
Ahmed Farid
|
abe25da3df
|
Create ZipSlip.qll
|
2022-03-01 00:04:02 +01:00 |
|
Ahmed Farid
|
3eae13161f
|
Delete ZipSlipCheckLib.ql
|
2022-03-01 00:01:34 +01:00 |
|
Ahmed Farid
|
21f6ad5190
|
Update and rename ZipSlipCheck.ql to ZipSlip.ql
|
2022-03-01 00:01:06 +01:00 |
|
Ahmed Farid
|
c207294dfc
|
Update zipslip_good.py
|
2022-02-26 18:31:22 +01:00 |
|
Ahmed Farid
|
d0d14be693
|
Update ZipSlip.qhelp
|
2022-02-26 18:25:13 +01:00 |
|
root
|
5ed5e0b105
|
Add query to detect ZipSlip
|
2022-02-13 16:44:27 -05:00 |
|
Chuan-kai Lin
|
9b4dbb9dd8
|
Merge pull request #7895 from github/cklin/upgrades-initial-dbscheme
Upgrade scripts testing: set initial dbschemes
|
2022-02-11 11:06:12 -08:00 |
|
Andrew Eisenberg
|
0f3d780935
|
Merge pull request #7946 from github/aeisenberg/check-change-not
Workflows: Augment workflow to ensure failure with invalid change notes
|
2022-02-11 09:25:14 -08:00 |
|
Nick Rolfe
|
b3048eed21
|
Merge pull request #7979 from github/nickrolfe/charp
C#: fix misspellings of 'csharp'
|
2022-02-11 16:57:59 +00:00 |
|
Andrew Eisenberg
|
5092493160
|
Update .github/workflows/validate-change-notes.yml
|
2022-02-11 08:41:20 -08:00 |
|
Erik Krogh Kristensen
|
360cf0ff17
|
Merge pull request #7981 from erik-krogh/erik-krogh/key-on-qlpacks
QL: add qlpack.yml to the cache key for QL-for-QL query build
|
2022-02-11 16:19:38 +01:00 |
|
Erik Krogh Kristensen
|
6639bdaf1e
|
add qlpack.yml to the cache key for QL-for-QL query build
|
2022-02-11 16:04:39 +01:00 |
|
Nick Rolfe
|
dc2f653496
|
Merge remote-tracking branch 'origin/main' into nickrolfe/charp
|
2022-02-11 14:56:15 +00:00 |
|
Erik Krogh Kristensen
|
25f6880809
|
Merge pull request #7980 from erik-krogh/fix-ql-pack
QL: fix pack name for ql-for-ql
|
2022-02-11 15:53:02 +01:00 |
|
Erik Krogh Kristensen
|
1fa5265a2e
|
fix pack name for ql-for-ql
|
2022-02-11 15:44:14 +01:00 |
|
Nick Rolfe
|
164cce7417
|
C#: fix misspellings of 'csharp'
|
2022-02-11 14:08:47 +00:00 |
|
Erik Krogh Kristensen
|
25d64a7901
|
Merge pull request #7930 from erik-krogh/rbApiIpa
RB: convert the ruby ApiGraphs to use IPA labels
|
2022-02-11 14:35:39 +01:00 |
|
Arthur Baars
|
678645ba57
|
Merge pull request #7883 from github/aibaars/ruby-cross
Ruby: add configuration for 'cross'
|
2022-02-11 13:15:34 +01:00 |
|
Arthur Baars
|
525c685584
|
Ruby: add configuration for 'cross'
|
2022-02-11 12:50:33 +01:00 |
|
Taus
|
d7f30de5b0
|
Merge pull request #7874 from RasmusWL/set-store-step
Python: Fix setStoreStep to use `SetElementContent`
|
2022-02-11 12:50:02 +01:00 |
|
Arthur Baars
|
a85b2093d6
|
Merge pull request #7969 from github/doc-remove-filter-queries
Docs: remove mention of 'filter queries'
|
2022-02-11 12:48:34 +01:00 |
|
Taus
|
327e0dad72
|
Merge pull request #7674 from erik-krogh/dbTypeInNonLib
QL: Use of db-type outside language core.
|
2022-02-11 12:00:14 +01:00 |
|
Arthur Baars
|
47eb96d223
|
Docs: remove mention of 'filter queries'
|
2022-02-11 11:45:34 +01:00 |
|
Erik Krogh Kristensen
|
5a39708cf7
|
move TLabel to the Impl module and cache it
|
2022-02-11 10:54:45 +01:00 |
|
Erik Krogh Kristensen
|
36e02ae9ac
|
Merge pull request #7912 from erik-krogh/moarApi
JS: convert more type-trackers to API-graphs
|
2022-02-11 10:32:45 +01:00 |
|
Erik Krogh Kristensen
|
daa96cc218
|
change some docstrings based on review, and make fields private
|
2022-02-11 10:25:54 +01:00 |
|
Tom Hvitved
|
0f60401919
|
Merge pull request #2513 from hvitved/csharp/null-maybe-capture
C#: Remove FPs from `cs/dereferenced-value-may-be-null`
|
2022-02-11 10:21:15 +01:00 |
|
Erik Krogh Kristensen
|
6ae4652ce9
|
make the Impl module private again
|
2022-02-11 10:17:24 +01:00 |
|
Erik Krogh Kristensen
|
3791b159fb
|
Merge pull request #7892 from erik-krogh/nanSan
JS: Add a `isNaN` sanitizer, and use it in queries that already had a typeof check
|
2022-02-11 10:13:06 +01:00 |
|
Erik Krogh Kristensen
|
2ffd79d451
|
Merge pull request #7921 from erik-krogh/snapdragon
JS: add model for the snapdragon library
|
2022-02-11 10:10:55 +01:00 |
|
Tom Hvitved
|
987b11c362
|
Merge pull request #7926 from hvitved/csharp/brotli
C#: Use Brotli instead of Gzip
|
2022-02-11 09:29:04 +01:00 |
|
Esben Sparre Andreasen
|
a4447ce372
|
Update javascript/ql/lib/semmle/javascript/frameworks/Snapdragon.qll
|
2022-02-11 08:20:02 +01:00 |
|
Harry Maclean
|
017183e7f3
|
Merge pull request #7919 from github/hmac/open-uri
Ruby: recognise additional form for OpenURI
|
2022-02-11 14:03:26 +13:00 |
|
Andrew Eisenberg
|
cba9e0b267
|
Fix paths in check-change-note
Library pack changes were being ignored.
|
2022-02-10 14:36:23 -08:00 |
|
Andrew Eisenberg
|
9441ea940c
|
Workflows: Augment workflow to ensure failure with invalid change notes
|
2022-02-10 13:52:54 -08:00 |
|
Erik Krogh Kristensen
|
f41bc64e30
|
add change-note
|
2022-02-10 22:41:35 +01:00 |
|
Arthur Baars
|
c9f898745c
|
Merge pull request #7943 from github/aibaars/cpp-move-note
C++: move change note
|
2022-02-10 22:32:31 +01:00 |
|
Arthur Baars
|
6cba49abe3
|
C++: move change note
|
2022-02-10 22:13:54 +01:00 |
|