Asger F
552b7ad3ca
Merge pull request #3765 from asger-semmle/js-team-sprint-merge2
...
JS: Merge js-team-sprint
2020-06-23 12:58:27 +01:00
semmle-qlci
a5a3573a3e
Merge pull request #3757 from asger-semmle/js/unused-npm-dependencies
...
Approved by erik-krogh
2020-06-23 12:56:45 +01:00
James Fletcher
843c5c6c1e
Merge pull request #3742 from jf205/sd-110
...
CodeQL docs: Expand QLDoc style guide
2020-06-23 09:47:25 +01:00
james
7e7d7e752e
docs: further improvements
2020-06-23 09:42:56 +01:00
Jonas Jensen
3747bd98f3
Merge pull request #3694 from geoffw0/models
...
C++: Extend the GetsFunction and SystemFunction models.
2020-06-23 10:15:32 +02:00
Shati Patel
95870977ca
Merge pull request #3763 from adityasharad/java/training-example-brace
...
Fix training example syntax
2020-06-23 08:34:09 +01:00
James Fletcher
c7cfd59651
Apply suggestions from code review
...
Co-authored-by: Shati Patel <42641846+shati-patel@users.noreply.github.com >
2020-06-23 08:31:48 +01:00
Mathias Vorreiter Pedersen
55ce5ce47a
Merge pull request #3754 from jbj/revert-flat-structs
...
C++: Revert #3419 to fix OpenJDK performance
2020-06-23 08:58:08 +02:00
Asger Feldthaus
b4f75ef414
Merge branch 'master' into js-team-sprint-merge2
2020-06-23 00:18:09 +01:00
Asger F
2edeb4aa8d
Merge pull request #3735 from esbena/js/insecure-http-options
...
JS: polish js/disabling-certificate-validation
2020-06-23 00:16:45 +01:00
Asger F
ca06f6dfb4
Merge branch 'js-team-sprint' into js/insecure-http-options
2020-06-23 00:16:02 +01:00
semmle-qlci
69b44def7b
Merge pull request #3759 from asger-semmle/js/sprint-suite
...
Approved by erik-krogh
2020-06-22 23:27:43 +01:00
Aditya Sharad
915148f82c
C++: Fix placeholder syntax in training example
2020-06-22 12:26:26 -07:00
Aditya Sharad
95f8ba433e
Java: Fix training example
2020-06-22 12:21:15 -07:00
james
3fa49a9771
address review comment about sentence style
2020-06-22 17:07:10 +01:00
James Fletcher
676d486635
Apply suggestions from code review
...
Co-authored-by: Jonas Jensen <jbj@github.com >
2020-06-22 17:03:31 +01:00
Asger Feldthaus
1efd71a681
JS: Sort security suite
2020-06-22 16:40:55 +01:00
Asger Feldthaus
8cc41a0c84
JS: Add new queries to security suite
2020-06-22 16:40:19 +01:00
Asger F
a067cd35aa
Merge pull request #3756 from esbena/js/delay-slow-query-merge
...
JS: delay merging two slow queries
2020-06-22 16:35:15 +01:00
Asger F
7d54b02fb9
Merge branch 'js-team-sprint' into js/delay-slow-query-merge
2020-06-22 16:34:49 +01:00
Asger F
4a459c8a7d
Merge pull request #3755 from esbena/js/polish-imcs
...
JS: polish js/incomplete-html-attribute-sanitization
2020-06-22 16:32:16 +01:00
Jonas Jensen
39137510ba
Merge pull request #3736 from rneatherway/exclude-cs-vulnerable-package
...
Exclude dependency-based query from C# Code Scanning
2020-06-22 17:27:23 +02:00
Geoffrey White
466f36c7e1
C++: Autoformat.
2020-06-22 16:04:32 +01:00
Asger Feldthaus
5cd2c7cdb2
JS: Reduce precision of js/unused-npm-dependency
2020-06-22 15:25:24 +01:00
Esben Sparre Andreasen
d4ad9a8bb2
Update change-notes/1.25/analysis-javascript.md
...
Co-authored-by: Asger F <asgerf@github.com >
2020-06-22 14:55:27 +02:00
Esben Sparre Andreasen
9a0bbb31f4
Revert "Merge pull request #3702 from esbena/js/memory-exhaustion"
...
This reverts commit eca5e2df8a , reversing
changes made to 1548eca994 .
2020-06-22 14:46:51 +02:00
Esben Sparre Andreasen
0a8d15ccc4
Revert "Merge pull request #3672 from esbena/js/server-crashing-route-handler"
...
This reverts commit 243e3ad9e3 , reversing
changes made to df79f2adc5 .
2020-06-22 14:45:35 +02:00
Esben Sparre Andreasen
3be094ea5b
JS: polish js/incomplete-html-attribute-sanitization
2020-06-22 14:35:00 +02:00
Jonas Jensen
5a5df4de26
Revert "Merge pull request #3419 from MathiasVP/flat-structs"
...
There was unfortunately a semantic merge conflict between #3419 and
#3587 that caused a performance regression on (at least) OpenJDK.
This reverts commit 982fb38807 , reversing
changes made to b841cacb83 .
2020-06-22 14:09:06 +02:00
semmle-qlci
7a5aae7432
Merge pull request #3630 from erik-krogh/DevServer
...
Approved by asgerf
2020-06-22 12:59:13 +01:00
Rasmus Wriedt Larsen
287bc40264
Merge pull request #3743 from tausbn/python-fix-deprecated-terms
...
Python: Fix a bunch of deprecated terms.
2020-06-22 13:36:06 +02:00
semmle-qlci
7f29465f35
Merge pull request #3752 from erik-krogh/limitStr
...
Approved by asgerf
2020-06-22 12:31:49 +01:00
semmle-qlci
e06a54c33d
Merge pull request #3494 from hvitved/dataflow/partial-flow-access-path-limit
...
Approved by aschackmull
2020-06-22 12:09:00 +01:00
James Fletcher
5ebaa1d303
Apply suggestions from code review
...
Co-authored-by: Shati Patel <42641846+shati-patel@users.noreply.github.com >
2020-06-22 12:07:42 +01:00
Calum Grant
f2f020fa51
Merge pull request #3610 from hvitved/csharp/dataflow/call-sensitivity
...
C#: Add call-sensitivity to data-flow call resolution
2020-06-22 10:36:45 +01:00
Esben Sparre Andreasen
0654823b97
Merge branch 'js-team-sprint' into js/insecure-http-options
2020-06-22 11:25:25 +02:00
Esben Sparre Andreasen
f1dad0d6e0
Update DisablingCertificateValidation.qhelp
2020-06-22 11:24:33 +02:00
Esben Sparre Andreasen
3e898487e8
Apply suggestions from code review
...
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com >
2020-06-22 11:23:40 +02:00
Anders Schack-Mulligen
71665a02fa
Merge pull request #3737 from Marcono1234/patch-1
...
Simplify NoAssignInBooleanExprs.ql
2020-06-22 10:46:00 +02:00
Erik Krogh Kristensen
8d1b080d78
limit size of getStringValue
2020-06-22 10:29:53 +02:00
Tom Hvitved
72e6c9c2b1
Data flow: Use accessPathLimit() in partial flow as well
2020-06-22 10:08:51 +02:00
Taus Brock-Nannestad
5d5f1b487b
Merge branch 'master' into python-fix-deprecated-terms
2020-06-19 21:59:17 +02:00
Asger F
eca5e2df8a
Merge pull request #3702 from esbena/js/memory-exhaustion
...
JS: add query js/memory-exhaustion
2020-06-19 20:35:57 +01:00
Jonas Jensen
ac89559b20
Merge pull request #3744 from github/p0-patch-1
...
Fix typo in cpp-security-extended.qls
2020-06-19 21:19:20 +02:00
Pavel Avgustinov
00f1e57d0c
Update cpp-security-extended.qls
2020-06-19 20:16:24 +01:00
Jonas Jensen
81d8dc15cd
Merge pull request #3693 from geoffw0/stringtest
...
C++: Add tests of char* -> std::string -> char* conversions.
2020-06-19 21:12:33 +02:00
Taus Brock-Nannestad
410f4781b3
Python: Fix one last reference.
...
This one got lost in the big renaming somehow.
2020-06-19 20:15:01 +02:00
semmle-qlci
1548eca994
Merge pull request #3689 from erik-krogh/https-fix
...
Approved by mchammer01
2020-06-19 17:00:11 +01:00
Tom Hvitved
573d55a160
Merge pull request #3740 from github/codeql-analysis-yml
...
Enable code scanning
2020-06-19 17:57:52 +02:00
Taus Brock-Nannestad
48e3e9c0b4
Python: Do all the renames.
2020-06-19 17:02:47 +02:00