Jami Cogswell
|
58845eca7c
|
Java: update recently added 'open-url' sinks to 'request-forgery'
|
2023-06-01 08:10:44 -04:00 |
|
Jami Cogswell
|
51f8f98118
|
Java: update recently added 'sql' sinks
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
ca8ac0c93f
|
Java: add comment about request-forgery sinks
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
9853a66b32
|
Java: update change note
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
3e5dc28c0a
|
Java: update more recently added sinks: path-injection and request-forgery
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
6bb6802fb8
|
Java: add change note draft
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
e28ce959a3
|
Java: update CaptureSinkModels test case
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
ad771984f1
|
Java: update recently added path-injection sinks
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
36e467e74a
|
Java: update cwe-sink.csv
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
0a8c0f58b2
|
Java: add sink kinds documentation
|
2023-05-31 15:51:07 -04:00 |
|
Jami Cogswell
|
5dbb698481
|
Java: update open/jdbc-url sink kinds to request-forgery
|
2023-05-31 15:50:31 -04:00 |
|
Jami Cogswell
|
cb10f4976b
|
Java: update create/read-file sink kinds to path-injection
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
eb1a8e2189
|
Java: update write-file sink kind to file-system-store
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
ac8d985a63
|
Java: update xss sink kind to html-injection and js-injection
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
041caa7405
|
Java: update header-splitting sink kind to response-splitting
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
51df84ed1c
|
Java: update set-hostname-verifier sink kind to hostname-verification
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
b23f384a50
|
Java: update intent-start sink kind to intent-redirection
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
5aa3e57ff3
|
Java: update pending-intent-sent sink kind to pending-intents
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
3ff4c7de8f
|
Java: update ldap sink kind to ldap-injection
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
6d2d25406c
|
Java: update xslt sink kind to xslt-injection
|
2023-05-31 15:49:07 -04:00 |
|
Jami Cogswell
|
cea97b3f2a
|
Java: update mvel sink kind to mvel-injection
|
2023-05-31 15:49:06 -04:00 |
|
Jami Cogswell
|
6cee0c4c75
|
Java: update jexl sink kind to jexl-injection
|
2023-05-31 15:49:06 -04:00 |
|
Jami Cogswell
|
6431d370c1
|
Java: update groovy sink kind to groovy-injection
|
2023-05-31 15:49:06 -04:00 |
|
Jami Cogswell
|
430010daa3
|
Java: update logging sink kind to log-injection
|
2023-05-31 15:49:06 -04:00 |
|
Jami Cogswell
|
8c4b394e1a
|
Java: update ssti sink kind to template-injection
|
2023-05-31 15:49:06 -04:00 |
|
Jami Cogswell
|
fc58d10a4e
|
Java: update xpath sink kind to xpath-injection
|
2023-05-31 15:49:06 -04:00 |
|
Jami Cogswell
|
55be2e5b67
|
Java: update url-redirect sink kind to url-redirection
|
2023-05-31 15:49:06 -04:00 |
|
Jami Cogswell
|
d24d8b1626
|
Java: update sql sink kind to sql-injection
|
2023-05-31 15:49:06 -04:00 |
|
Alexandre Boulgakov
|
67cd6b7fa6
|
Merge pull request #13337 from MathiasVP/revert-13207
Revert #13207
|
2023-05-31 19:41:01 +01:00 |
|
Mathias Vorreiter Pedersen
|
52eb7aee5e
|
Revert "Merge pull request #13207 from MathiasVP/use-equiv-class-in-getInstruction"
This reverts commit 5bc844c4c6, reversing
changes made to b2fb2aa0d1.
|
2023-05-31 11:26:09 -07:00 |
|
Mathias Vorreiter Pedersen
|
3d9c282f48
|
Merge pull request #13320 from jketema/ptr-deref-dedup
|
2023-05-31 10:12:05 -07:00 |
|
Arthur Baars
|
c211b704f3
|
Merge pull request #13272 from github/post-release-prep/codeql-cli-2.13.3
Post-release preparation for codeql-cli-2.13.3
|
2023-05-31 15:33:12 +02:00 |
|
Charis Kyriakou
|
24b99aef7a
|
Merge pull request #13206 from github/charisk/mrva-remove-token-perms
Remove GITHUB_TOKEN permissions note since it's no longer required
|
2023-05-31 12:22:49 +01:00 |
|
Arthur Baars
|
5981ce4cb1
|
Swift: accept test output from failed CFG consistency queries
|
2023-05-31 12:15:21 +02:00 |
|
Jeroen Ketema
|
ace7b6b711
|
C++: Add cpp/invalid-pointer-deref FP test case
|
2023-05-31 11:54:53 +02:00 |
|
Taus
|
b39a5a64af
|
Merge pull request #13317 from github/java/update-mad-decls-after-triage-2023-05-30T14-11-29
Java: Update MaD Declarations after Triage
|
2023-05-31 11:40:49 +02:00 |
|
Tony Torralba
|
482bb94ad9
|
Merge pull request #13179 from pwntester/java_gson
[Java] Add basic support for Google's Gson library
|
2023-05-31 11:16:19 +02:00 |
|
Tony Torralba
|
fe26aca238
|
Remove non-ASCII character
|
2023-05-31 09:25:37 +02:00 |
|
Tony Torralba
|
6f302a43ea
|
Merge pull request #13297 from atorralba/atorralba/java/playmvc-models
Java: Add models for the Play Framework
|
2023-05-31 09:02:17 +02:00 |
|
Michael Nebel
|
2266e28583
|
Merge pull request #13262 from michaelnebel/flowsummary/refactorgetcomponentstack
C#: Re-factor getComponent.
|
2023-05-31 08:22:44 +02:00 |
|
Erik Krogh Kristensen
|
b9ffa11915
|
Merge pull request #13328 from github/dependabot/cargo/ql/chrono-0.4.26
Bump chrono from 0.4.25 to 0.4.26 in /ql
|
2023-05-31 07:42:37 +02:00 |
|
dependabot[bot]
|
75f6355bd6
|
Bump chrono from 0.4.25 to 0.4.26 in /ql
Bumps [chrono](https://github.com/chronotope/chrono) from 0.4.25 to 0.4.26.
- [Release notes](https://github.com/chronotope/chrono/releases)
- [Changelog](https://github.com/chronotope/chrono/blob/main/CHANGELOG.md)
- [Commits](https://github.com/chronotope/chrono/compare/v0.4.25...v0.4.26)
---
updated-dependencies:
- dependency-name: chrono
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2023-05-31 04:06:22 +00:00 |
|
Mathias Vorreiter Pedersen
|
a646749380
|
Merge pull request #13318 from MathiasVP/exclude-std-in-constant-size-array-off-by-one
C++: Exclude `StdNamespace` sources in `cpp/constant-size-array-off-by-one`
|
2023-05-30 14:31:18 -07:00 |
|
Mathias Vorreiter Pedersen
|
65eebf1f40
|
Merge branch 'main' into exclude-std-in-constant-size-array-off-by-one
|
2023-05-30 13:40:01 -07:00 |
|
Arthur Baars
|
490d22d123
|
Merge remote-tracking branch 'upstream/main' into post-release-prep/codeql-cli-2.13.3
|
2023-05-30 21:31:28 +02:00 |
|
Arthur Baars
|
60a5ef744f
|
Merge pull request #13319 from aibaars/print-cfg
Ruby: add print-cfg query
|
2023-05-30 21:15:06 +02:00 |
|
Jeroen Ketema
|
dd30acf1e3
|
C++: Add nodes query predicate to cpp/invalid-pointer-deref
|
2023-05-30 18:43:01 +02:00 |
|
Jeroen Ketema
|
f5ed02a433
|
C++: Take into account the delta at the final sink in cpp/invalid-pointer-deref
|
2023-05-30 18:33:20 +02:00 |
|
Jeroen Ketema
|
de974cc18a
|
C++: Add cpp/invalid-pointer-deref test case that shows some duplicate results
|
2023-05-30 18:18:13 +02:00 |
|
Jeroen Ketema
|
a8c76388c0
|
C++: Fix configuration names in comments in cpp/invalid-pointer-deref
|
2023-05-30 18:15:37 +02:00 |
|