Mark Shannon
|
61bd8682df
|
Python: Improve API and representation of taint tracking nodes. Update queries and tests accordingly.
|
2018-11-23 12:32:14 +00:00 |
|
Mark Shannon
|
c01db23f58
|
Python: Fix up expected results of SqlInjection.ql
|
2018-11-22 11:05:09 +00:00 |
|
Mark Shannon
|
bfb7e17ebf
|
Python: Move library to correct location.
|
2018-11-22 11:05:09 +00:00 |
|
Mark Shannon
|
f3fedcdf38
|
Python tests: Move security test stubs to correct location.
|
2018-11-22 11:05:09 +00:00 |
|
Mark Shannon
|
04e5b8927a
|
Python tests: use a more accurate form os os.path.join() in test lib.
|
2018-11-22 11:05:09 +00:00 |
|
Mark Shannon
|
88d82017b3
|
Python: Convert stack-trace-exposure query to path-problem.
|
2018-11-22 11:05:08 +00:00 |
|
Mark Shannon
|
2a24723cc3
|
Python: Update test results for path queries.
|
2018-11-22 11:05:08 +00:00 |
|
Mark Shannon
|
722d89fc75
|
Upgrade taint-tracking security queries to path-problem queries.
|
2018-11-22 11:05:01 +00:00 |
|
Taus
|
24bf2922e0
|
Merge pull request #515 from markshannon/python-add-metadata
Python tests: Add missing metadata files.
|
2018-11-21 15:45:32 +01:00 |
|
Taus
|
13d130dad0
|
Merge pull request #514 from markshannon/python-remove-architect-tests
Python tests: Remove some obsolete tests.
|
2018-11-21 15:45:21 +01:00 |
|
Mark Shannon
|
527c95cd0b
|
Python tests: Add missing metadata files.
|
2018-11-21 14:39:18 +00:00 |
|
Mark Shannon
|
976fed76b9
|
Python tests: Remove some obsolete tests.
|
2018-11-21 14:18:46 +00:00 |
|
ian-semmle
|
366934f884
|
Merge pull request #350 from geoffw0/cpp-205-detail
CPP: Add detail to the CPP-205 test
|
2018-11-21 13:30:53 +00:00 |
|
Pavel Avgustinov
|
5cd3a9c40d
|
Merge pull request #500 from markshannon/python-python-security-queries-to-high
Python: Set precision of security queries to 'high'
|
2018-11-21 09:41:38 +00:00 |
|
Taus
|
7ba4d71ffb
|
Merge pull request #494 from markshannon/python-tests
QL tests for Python queries and libraries.
|
2018-11-20 16:00:06 +01:00 |
|
Taus
|
6317546cdb
|
Merge pull request #493 from markshannon/python-queries
Initial commit of Python queries and QL libraries.
|
2018-11-20 15:59:15 +01:00 |
|
Mark Shannon
|
a135e4665e
|
Update lgtm.yml file to exclude Python source in query and test folders.
|
2018-11-20 14:57:36 +00:00 |
|
Mark Shannon
|
e930b43bf3
|
Python security queries. Choose a precision reflecting actual precision for Security queries.
|
2018-11-19 17:10:40 +00:00 |
|
Mark Shannon
|
c2e0ee1c47
|
Add .qlpath and .project files for Python queries.
|
2018-11-19 16:28:53 +00:00 |
|
Mark Shannon
|
05b69a1c0f
|
QL tests for Python queries and libraries.
|
2018-11-19 15:15:54 +00:00 |
|
Aditya Sharad
|
165bb8b6b8
|
Merge pull request #488 from pavgust/bump/master-next
Mergeback master to next
|
2018-11-19 15:12:37 +00:00 |
|
Mark Shannon
|
5f58824d1b
|
Initial commit of Python queries and QL libraries.
|
2018-11-19 15:10:42 +00:00 |
|
Pavel Avgustinov
|
16ec9f1aa4
|
Merge remote-tracking branch 'origin/next' into bump/master-next
|
2018-11-19 10:37:07 +00:00 |
|
Geoffrey White
|
90c75cd362
|
Merge pull request #478 from felicity-semmle/cpp/SD-2777-jsf-note
C++: Add JSF note to qhelp for sub-set of JSF queries
|
2018-11-19 09:30:39 +00:00 |
|
Tom Hvitved
|
dd4c9654f2
|
Merge pull request #483 from calumgrant/cs/vulnerable-package
C#: Remove duplicate results from cs/use-of-vulnerable-package
|
2018-11-19 10:09:37 +01:00 |
|
semmle-qlci
|
9e4aeb36a6
|
Merge pull request #436 from asger-semmle/url-concat
Approved by xiemaisi
|
2018-11-19 08:57:24 +00:00 |
|
semmle-qlci
|
328c86c552
|
Merge pull request #479 from asger-semmle/typescript-extractor-perf1
Approved by xiemaisi
|
2018-11-19 08:53:41 +00:00 |
|
semmle-qlci
|
128118cfa7
|
Merge pull request #481 from asger-semmle/typescript-jsx
Approved by xiemaisi
|
2018-11-19 08:53:15 +00:00 |
|
yh-semmle
|
47b9218b05
|
Merge pull request #480 from aschackmull/java/path-problem-conversion
Java: Convert security queries to path-problem.
|
2018-11-18 20:55:52 -05:00 |
|
Felicity Chapman
|
d4bcc1e9d4
|
Add note to further file
|
2018-11-17 13:03:48 +00:00 |
|
Felicity Chapman
|
5c924307ca
|
Remove incorrect comment from query
|
2018-11-17 13:03:46 +00:00 |
|
Felicity Chapman
|
9ce1a2a040
|
Add JSF note to qhelp for sub-set of JSF queries
|
2018-11-17 13:03:45 +00:00 |
|
calum
|
1aa5e24108
|
C#: Remove duplicate results from cs/use-of-vulnerable-package
|
2018-11-16 16:50:35 +00:00 |
|
Asger F
|
84c1ba0b31
|
TS: fix the fix
|
2018-11-16 14:39:43 +00:00 |
|
Asger F
|
a35061ee79
|
TS: dont create JSON nodes in convertJsxSelfClosingElement
|
2018-11-16 12:58:14 +00:00 |
|
Asger F
|
d839fcdafc
|
TS: refactor to fix AutoBuildTest
|
2018-11-16 12:52:26 +00:00 |
|
Anders Schack-Mulligen
|
918fc90515
|
Java: Add change note.
|
2018-11-16 13:48:50 +01:00 |
|
Anders Schack-Mulligen
|
deb61d6f29
|
Java: Update test output.
|
2018-11-16 13:48:50 +01:00 |
|
Anders Schack-Mulligen
|
5e03b6f681
|
Java: Convert security queries to path-problems.
|
2018-11-16 13:48:50 +01:00 |
|
Anders Schack-Mulligen
|
437b2c1503
|
Java: Cosmetic changes and missing overrides.
|
2018-11-16 13:48:50 +01:00 |
|
Asger F
|
c06c9a02f7
|
JS: fix copy pasta and test output
|
2018-11-16 10:47:02 +00:00 |
|
Asger F
|
dd5f485fff
|
JS: use original sanitizer for SSRF query
|
2018-11-16 10:46:14 +00:00 |
|
Asger F
|
0153a4794e
|
JS: add change note
|
2018-11-16 10:44:52 +00:00 |
|
Asger F
|
6ec13feab4
|
JS: recognize sanitizing slashes in URL redirection queries
|
2018-11-16 10:43:25 +00:00 |
|
Asger F
|
b5d3dd5e22
|
TS: do more work in parallel
|
2018-11-16 10:39:27 +00:00 |
|
semmle-qlci
|
0647743333
|
Merge pull request #467 from xiemaisi/js/amd-imports
Approved by asger-semmle
|
2018-11-16 09:31:50 +00:00 |
|
Tom Hvitved
|
57bbe0291b
|
Merge pull request #393 from calumgrant/cs/extractor/dynamic-type-name
C#: Minor extractor fixes
|
2018-11-16 09:09:46 +01:00 |
|
calum
|
9eed758642
|
C#: Update change notes.
|
2018-11-15 18:28:17 +00:00 |
|
calum
|
090e896ff5
|
C#: Change Property TagStackBehaviour to push a tag, to give the expression body a tag stack.
|
2018-11-15 18:28:17 +00:00 |
|
calum
|
bb49fe170b
|
C# extractor: Handle the type name of dynamic.
|
2018-11-15 18:27:53 +00:00 |
|