Michael Nebel
|
5e3ae0afac
|
C#: Update .NET and ASP.NET stubs.
|
2023-09-26 15:09:10 +02:00 |
|
Michael Nebel
|
d00ff9665c
|
C#: Update .NET and ASP.NET stubs.
|
2023-09-26 12:28:23 +02:00 |
|
Tom Hvitved
|
486afd9f29
|
Merge pull request #14310 from hvitved/csharp/stub-generator-test
C#: Add stub generator integration test
|
2023-09-26 10:07:45 +02:00 |
|
Joe Farebrother
|
7c230d61a8
|
Merge pull request #13882 from joefarebrother/csharp-insecure-direct-object-ref
C#: Add query for Insecure Direct Object Reference
|
2023-09-25 20:29:54 +01:00 |
|
Tom Hvitved
|
4183fbe7cb
|
Merge pull request #14295 from hvitved/csharp/lambda-type-flow
C#: Improve lambda dispatch using type flow
|
2023-09-25 19:19:51 +02:00 |
|
Tom Hvitved
|
4262fd5a48
|
C#: Add stub generator integration test
|
2023-09-25 17:02:11 +02:00 |
|
Joe Farebrother
|
d7c1be40d9
|
Fix codescanning alert by tweaking imported modules
|
2023-09-25 15:47:05 +01:00 |
|
Joe Farebrother
|
3efbbb3645
|
Elaborate 'guess' to 'guess or determine'
|
2023-09-25 15:44:40 +01:00 |
|
Michael Nebel
|
2d87d76576
|
Merge pull request #14272 from michaelnebel/csharp/externalapi
C#: Minor improvements to the ExternalApi implementation.
|
2023-09-25 16:35:58 +02:00 |
|
Michael Nebel
|
e997a7c923
|
C#: Address review comment.
|
2023-09-25 14:59:18 +02:00 |
|
Tom Hvitved
|
ae06040a48
|
Address review comments
|
2023-09-25 14:30:08 +02:00 |
|
Anders Schack-Mulligen
|
06cb277eb0
|
Merge pull request #14299 from aschackmull/dataflow/more-defaults
Dataflow: Make use of defaults for language-specific hooks.
|
2023-09-25 11:19:44 +02:00 |
|
Joe Farebrother
|
df5fcc92e7
|
Apply suggestions from docs review
Co-authored-by: Sam Browning <106113886+sabrowning1@users.noreply.github.com>
|
2023-09-25 10:13:56 +01:00 |
|
Tom Hvitved
|
8f35c99f16
|
C#: Improve lambda dispatch using type flow
|
2023-09-23 11:41:03 +02:00 |
|
Tom Hvitved
|
09063c5189
|
C#: Port and extend type dispatch tests from Java
|
2023-09-23 11:37:51 +02:00 |
|
Anders Schack-Mulligen
|
66da997b7b
|
Dataflow: Make use of defaults for language-specific hooks.
|
2023-09-22 14:54:22 +02:00 |
|
Tom Hvitved
|
13ad6f8690
|
C#: Add missing flow summary for List<T>.ForEach
|
2023-09-22 13:48:32 +02:00 |
|
Tom Hvitved
|
9638a6cb8f
|
Merge pull request #14095 from hvitved/csharp/stub-generator
C#: Roslyn-based stub generation
|
2023-09-22 12:12:34 +02:00 |
|
Tom Hvitved
|
831baa867c
|
C#: Refactor and regenerate stubs
|
2023-09-22 09:15:01 +02:00 |
|
Tom Hvitved
|
f07d02be96
|
Regenerate stubs
|
2023-09-21 15:35:50 +02:00 |
|
Anders Schack-Mulligen
|
13f7daf71e
|
Merge pull request #13982 from aschackmull/dataflow/typeflow-calledge-pruning
Dataflow: Add type-based call-edge pruning.
|
2023-09-21 13:33:08 +02:00 |
|
Tom Hvitved
|
2343e5ecd8
|
C#: Regenerate NHibernate stubs
|
2023-09-21 12:56:11 +02:00 |
|
Tom Hvitved
|
e944b90eef
|
C#: Regenerate Microsoft.AspNetCore.App stubs
|
2023-09-21 12:56:05 +02:00 |
|
Tom Hvitved
|
c547adc9d4
|
C#: Regenerate Microsoft.NetCore.App stubs
|
2023-09-21 12:56:04 +02:00 |
|
Tom Hvitved
|
58f45ea198
|
C#: Regenerate Newtonsoft.Json stubs
|
2023-09-21 12:56:04 +02:00 |
|
Tom Hvitved
|
8b2c233b61
|
C#: Use new stub generator in make_stubs_nuget.py
|
2023-09-21 11:33:25 +02:00 |
|
Michael Nebel
|
0b84dee65e
|
C#: Minor improvements to the ExternalApi implementation.
|
2023-09-20 14:34:27 +02:00 |
|
Joe Farebrother
|
4497e22195
|
Add an additional example and additional test cases for authorize attribute cases
|
2023-09-20 04:13:34 +01:00 |
|
Joe Farebrother
|
475fe3a2a5
|
Attempt to improve performance in checksUser
|
2023-09-20 03:18:20 +01:00 |
|
Michael Nebel
|
fc3bc95147
|
Merge pull request #14218 from michaelnebel/csharp/dotnetdotnet
Lua: Tracing of `dotnet dotnet`.
|
2023-09-19 13:21:34 +02:00 |
|
Anders Schack-Mulligen
|
b13d026434
|
Dataflow: Review fixes.
|
2023-09-18 13:15:26 +02:00 |
|
Joe Farebrother
|
868836e747
|
Update severity
|
2023-09-15 16:40:12 +01:00 |
|
Joe Farebrother
|
eb2f5898bd
|
Fix typos
|
2023-09-15 16:39:51 +01:00 |
|
Joe Farebrother
|
68ad5b7c00
|
Restrict logic for checking for id parameters on index expressions for performance
|
2023-09-15 16:35:29 +01:00 |
|
Tamas Vajk
|
c34fef1eb6
|
Adjust integration tests after path changes and generating file with global usings
|
2023-09-15 13:35:25 +02:00 |
|
Joe Farebrother
|
6d704be7d2
|
Rewrite checks for index expressions in terms of dataflow
|
2023-09-15 10:25:27 +01:00 |
|
Joe Farebrother
|
a2dce6be14
|
Check for authorize attributes in more namespaces and on overridden methods
|
2023-09-15 10:25:27 +01:00 |
|
Joe Farebrother
|
6a95ed64ff
|
Add test cases for authorization from attributes
|
2023-09-15 10:25:27 +01:00 |
|
Joe Farebrother
|
ac45050545
|
Add checks for authorization attributes
|
2023-09-15 10:25:27 +01:00 |
|
Joe Farebrother
|
0a27da08d6
|
Minor changes from review suggestions to shared logic between this and missing access control
Use case insensitive regex, factor out page load to improve possible bad joins make needsAuth not a member predicate
|
2023-09-15 10:25:27 +01:00 |
|
Joe Farebrother
|
a022893f0f
|
Add additional example to qhelp + additional resource
|
2023-09-15 10:25:27 +01:00 |
|
Joe Farebrother
|
86abd338e5
|
Update test options
|
2023-09-15 10:25:26 +01:00 |
|
Joe Farebrother
|
9f25c71ca6
|
Apply minor reveiw suggstions
|
2023-09-15 10:25:26 +01:00 |
|
Joe Farebrother
|
4967fe0b77
|
Add change note + update query ID
|
2023-09-15 10:25:26 +01:00 |
|
Joe Farebrother
|
3e6750ba4c
|
Add documentation
|
2023-09-15 10:25:26 +01:00 |
|
Joe Farebrother
|
f8b1b38438
|
Update alert message and make user checks more precise
|
2023-09-15 10:25:26 +01:00 |
|
Joe Farebrother
|
009a7bfc87
|
Add MVC tests
|
2023-09-15 10:25:26 +01:00 |
|
Joe Farebrother
|
20d42dfd7d
|
Add tests for webforms case
|
2023-09-15 10:25:26 +01:00 |
|
Joe Farebrother
|
2edd73eb60
|
Fix typos in filepath + metadata, add severity
|
2023-09-15 10:25:26 +01:00 |
|
Joe Farebrother
|
251f875304
|
Fix filenme typo
|
2023-09-15 10:25:26 +01:00 |
|