Harry Maclean
|
cb3ebeedf9
|
Merge pull request #9696 from thiggy1342/experimental-strong-params
RB: Experimental strong params query
|
2022-07-25 12:08:55 +12:00 |
|
thiggy1342
|
c2710fb038
|
Update ruby/ql/src/change-notes/2022-07-21-check-http-verb.md
Co-authored-by: Harry Maclean <hmac@github.com>
|
2022-07-22 13:52:00 -04:00 |
|
thiggy1342
|
2c095cf166
|
Update ruby/ql/src/change-notes/2022-07-21-weak-params.md
Co-authored-by: Harry Maclean <hmac@github.com>
|
2022-07-22 13:51:38 -04:00 |
|
thiggy1342
|
1842bde879
|
add change note
|
2022-07-21 22:13:53 +00:00 |
|
thiggy1342
|
c1a6ca5f94
|
add change note
|
2022-07-21 22:11:14 +00:00 |
|
github-actions[bot]
|
d1aa0d7dd3
|
Release preparation for version 2.10.1
|
2022-07-14 08:56:03 +00:00 |
|
Andrew Eisenberg
|
ddf06f8617
|
Add change notes and qldoc for moved files
|
2022-06-29 10:03:12 -07:00 |
|
Asger F
|
d94010c244
|
Grammar: report -> reports
|
2022-06-23 14:17:52 +02:00 |
|
github-actions[bot]
|
a74051c658
|
Release preparation for version 2.10.0
|
2022-06-23 11:17:46 +00:00 |
|
Edoardo Pirovano
|
ad02b85efa
|
Merge branch main into rc/3.6
|
2022-06-21 11:15:25 +01:00 |
|
Harry Maclean
|
ff0422c12d
|
Ruby: Add rb/improper-memoization change note
|
2022-06-16 12:44:33 +12:00 |
|
github-actions[bot]
|
104ac05f49
|
Release preparation for version 2.9.4
|
2022-06-15 08:22:38 +00:00 |
|
Alex Ford
|
8d195e3188
|
Merge pull request #9157 from alexrford/crypto-op-block-mode
Ruby/Python: Add a `BlockMode` concept for `CryptographicOperations`
|
2022-06-13 21:32:36 +02:00 |
|
github-actions[bot]
|
1f1b364feb
|
Release preparation for version 2.9.3
|
2022-05-25 07:46:48 +00:00 |
|
Alex Ford
|
9e483ac4e0
|
Fix change note formatting
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2022-05-19 14:25:44 +01:00 |
|
Alex Ford
|
bda1c21562
|
BrokenCryptoAlgorithm block mode change notes
|
2022-05-16 15:49:19 +01:00 |
|
github-actions[bot]
|
ee9980b31c
|
Release preparation for version 2.9.2
|
2022-05-12 10:17:28 +00:00 |
|
github-actions[bot]
|
8e4cf190e9
|
Release preparation for version 2.9.1
|
2022-04-28 11:59:05 +00:00 |
|
Harry Maclean
|
ba1d43dd42
|
Merge pull request #8658 from hmac/hmac/insecure-download
Ruby: Add InsecureDownload query
|
2022-04-28 11:07:35 +12:00 |
|
Harry Maclean
|
f35379bf8c
|
Ruby: Add change note for rb/insecure-download
|
2022-04-27 12:47:09 +12:00 |
|
Harry Maclean
|
bbc3043836
|
Add change note for rb/regex/missing-regexp-anchor
|
2022-04-27 10:12:33 +12:00 |
|
Nick Rolfe
|
649d7dd022
|
Merge pull request #8607 from github/nickrolfe/incomplete_sanitization
Ruby: port of `js/incomplete-sanitization`
|
2022-04-26 17:10:24 +01:00 |
|
github-actions[bot]
|
eeaf233c29
|
Release preparation for version 2.9.0
|
2022-04-21 14:49:00 +00:00 |
|
Nick Rolfe
|
9b6e610e24
|
Merge remote-tracking branch 'origin/main' into nickrolfe/incomplete_sanitization
|
2022-04-20 12:05:22 +01:00 |
|
Harry Maclean
|
c3f1fba985
|
Merge pull request #8598 from hmac/hmac/insecure-dep-resolution
Ruby: Add rb/insecure-dependency query
|
2022-04-14 02:09:44 +02:00 |
|
Nick Rolfe
|
a1a7d2c088
|
Ruby: add changenote for rb/incomplete-sanitization
|
2022-04-13 17:32:38 +01:00 |
|
Edoardo Pirovano
|
ce82c54b94
|
Merge branch 'main' into edoardo/3.5-mergeback
|
2022-04-08 15:30:58 +01:00 |
|
github-actions[bot]
|
ee746d20df
|
Release preparation for version 2.8.5
|
2022-04-01 10:39:31 +00:00 |
|
Alex Ford
|
882f78c6f9
|
Merge remote-tracking branch 'origin/main' into ruby/weak-cryptographic-algorithm
|
2022-03-31 17:17:46 +01:00 |
|
Harry Maclean
|
d13bbbaf35
|
Ruby: Add change note for rb/insecure-dependency
|
2022-03-30 13:39:35 +13:00 |
|
Arthur Baars
|
65f8f56095
|
Merge branch 'main' into incomplete-url-string-sanitization
|
2022-03-24 11:27:30 +01:00 |
|
Harry Maclean
|
ff1d96c922
|
Ruby: Add rb/http-to-file-access query
|
2022-03-22 11:09:08 +13:00 |
|
Harry Maclean
|
6c18e1d7ac
|
Merge pull request #8272 from hmac/hmac/tainted-format-string
|
2022-03-22 08:37:47 +13:00 |
|
github-actions[bot]
|
dedc8c2254
|
Release preparation for version 2.8.4
|
2022-03-21 13:25:49 +00:00 |
|
Alex Ford
|
c891c53835
|
Merge pull request #8395 from alexrford/ruby/clear-text-storage
Ruby: add `rb/clear-text-storage-sensitive-data` query
|
2022-03-21 10:05:39 +00:00 |
|
Harry Maclean
|
c73dc8ad0c
|
Ruby: Add change note for rb/tainted-format-string
|
2022-03-21 12:51:47 +13:00 |
|
Arthur Baars
|
bf888f0f0b
|
Merge remote-tracking branch 'upstream/main' into incomplete-url-string-sanitization
Conflicts:
config/identical-files.json
javascript/ql/src/Security/CWE-020/IncompleteUrlSubstringSanitization.ql
javascript/ql/src/Security/CWE-020/IncompleteUrlSubstringSanitization.qll
ruby/ql/src/queries/security/cwe-020/IncompleteUrlSubstringSanitization.qll
|
2022-03-18 16:09:20 +01:00 |
|
Arthur Baars
|
ab93b3784b
|
Merge remote-tracking branch 'upstream/main' into incomplete-hostname
|
2022-03-16 12:31:12 +01:00 |
|
Alex Ford
|
fc232ce55f
|
Ruby: changenote for rb/weak-cryptographic-algorithm
|
2022-03-13 21:25:28 +00:00 |
|
github-actions[bot]
|
6b194bc55f
|
Release preparation for version 2.8.3
|
2022-03-10 19:43:58 +00:00 |
|
Alex Ford
|
0e2709f809
|
Ruby: changenote for rb/clear-text-storage-sensitive-data
|
2022-03-10 17:38:52 +00:00 |
|
Arthur Baars
|
a1873cc803
|
Ruby: IncompleteUrlSubstringSanitization.ql
|
2022-03-07 16:17:32 +01:00 |
|
Arthur Baars
|
9e8930c192
|
Ruby: IncompleteHostnameRegExp.ql
|
2022-03-07 16:10:08 +01:00 |
|
github-actions[bot]
|
20fe22c8c8
|
Release preparation for version 2.8.2
|
2022-02-24 14:57:08 +00:00 |
|
Alex Ford
|
dd383f942f
|
Merge remote-tracking branch 'origin/main' into ruby/clear-text-logging
|
2022-02-17 15:32:31 +00:00 |
|
github-actions[bot]
|
f25fc70b7c
|
Release preparation for version 2.8.1
|
2022-02-10 22:08:24 +00:00 |
|
Alex Ford
|
269722fa86
|
Ruby: rb/clear-text-logging-sensitive-data changenote
|
2022-01-28 17:27:05 +00:00 |
|
Tamás Vajk
|
cc4bb9b02f
|
Update 0.0.8.md
|
2022-01-27 11:49:29 +01:00 |
|
github-actions[bot]
|
634134f283
|
Release preparation for version 2.8.0
|
2022-01-27 10:40:20 +00:00 |
|
Edoardo Pirovano
|
1b539eb4dc
|
Merge branch rc/3.4 into main
|
2022-01-25 16:22:01 +00:00 |
|