Tom Hvitved
|
edde3defed
|
Merge pull request #11153 from hvitved/ruby/basic-block-at-conditions
Ruby: Split basic blocks around constant conditionals
|
2022-11-08 13:35:52 +01:00 |
|
Rasmus Wriedt Larsen
|
4895daba85
|
DataFlow: Add read/store stepIsLocal consistency checks
|
2022-11-08 13:32:49 +01:00 |
|
Tom Hvitved
|
37a69b4569
|
Ruby: Avoid stage recomputation
|
2022-11-08 10:51:30 +01:00 |
|
Erik Krogh Kristensen
|
c82410fd16
|
Merge pull request #10680 from erik-krogh/unsafeRbCmd
RB: add an unsafe-shell-command-construction query
|
2022-11-08 09:22:33 +01:00 |
|
Tom Hvitved
|
7ba0682297
|
Ruby: Split basic blocks around constant conditionals
|
2022-11-08 09:07:23 +01:00 |
|
Harry Maclean
|
03aa8df8e2
|
Ruby: Cosmetic change
|
2022-11-08 10:24:21 +13:00 |
|
Harry Maclean
|
d392cdaab6
|
Merge pull request #11022 from hmac/try-code-injection
Ruby: try/try! as code execution
|
2022-11-08 09:42:52 +13:00 |
|
erik-krogh
|
7a8e7150f0
|
add change-note
|
2022-11-07 14:36:55 +01:00 |
|
erik-krogh
|
40e4359173
|
port the Ruby regex/redos queries to use the shared pack
|
2022-11-07 14:34:18 +01:00 |
|
erik-krogh
|
3432e814c5
|
add a Ruby implementation of RegexTreeViewSig
|
2022-11-07 14:33:46 +01:00 |
|
erik-krogh
|
af922702c7
|
move existing regex-tree into a module
|
2022-11-07 14:33:46 +01:00 |
|
erik-krogh
|
dddf550593
|
add codeql/regex as a dependency
|
2022-11-07 14:33:45 +01:00 |
|
Asger F
|
a213e9e55d
|
Merge pull request #1 from hvitved/rb/data-flow-layer-capture2
Ruby: Make sure to always generate SSA definitions for namespace self-variables
|
2022-11-07 14:12:48 +01:00 |
|
Erik Krogh Kristensen
|
d67235b3c1
|
Merge pull request #11071 from erik-krogh/fixCanon
ReDoS: fix canonicalization in NfaUtils
|
2022-11-07 14:10:50 +01:00 |
|
Asger F
|
f991991474
|
Ruby: fix incomplete renaming of getCanonicalEnclosing/Nested module
|
2022-11-07 14:04:10 +01:00 |
|
Tom Hvitved
|
2737255705
|
Ruby: Make sure to always generate SSA definitions for namespace self-variables
|
2022-11-07 14:02:09 +01:00 |
|
Asger F
|
334d5b1b17
|
Ruby: fix stale qldoc
|
2022-11-07 11:23:40 +01:00 |
|
Asger F
|
27e1a8bd7a
|
Ruby: cache predicates related to getConst
|
2022-11-07 11:18:29 +01:00 |
|
Anders Schack-Mulligen
|
99ca28ea9b
|
Merge pull request #10886 from aschackmull/dataflow/joinorders
Dataflow: Fix a couple of join-orders.
|
2022-11-07 11:05:29 +01:00 |
|
Asger F
|
d4b018f242
|
Ruby: typo: found up -> looked up
|
2022-11-07 09:58:00 +01:00 |
|
Asger F
|
25f0382fce
|
Ruby: replace asMethod with asCallableAstNode
|
2022-11-07 09:38:48 +01:00 |
|
Asger F
|
af5a378572
|
Ruby: fix typo in qldoc
|
2022-11-07 09:20:35 +01:00 |
|
Asger F
|
9a38e31baa
|
Ruby: add explicit 'this'
|
2022-11-07 09:20:28 +01:00 |
|
Asger F
|
ff20908bbd
|
Ruby: Assignment -> AssignExpr
|
2022-11-07 09:20:16 +01:00 |
|
Asger F
|
25dd8db423
|
Ruby: Refactor out getAnElementWriteCall
|
2022-11-07 09:18:18 +01:00 |
|
Asger F
|
5fa49b3319
|
Ruby: asExpr() -> getExprNode()
|
2022-11-07 09:18:00 +01:00 |
|
Asger F
|
8b85744d3e
|
Ruby: use lambdaCreation and handle "proc" in there
|
2022-11-07 09:14:55 +01:00 |
|
github-actions[bot]
|
fca754bddd
|
Post-release preparation for codeql-cli-2.11.3
|
2022-11-05 14:30:48 +00:00 |
|
Dave Bartolomeo
|
013b7eff1c
|
Apply suggestions from code review
Co-authored-by: Jeroen Ketema <93738568+jketema@users.noreply.github.com>
|
2022-11-04 18:46:32 -04:00 |
|
github-actions[bot]
|
508327235a
|
Release preparation for version 2.11.3
|
2022-11-04 20:16:23 +00:00 |
|
Anders Schack-Mulligen
|
a1dba82360
|
Dataflow: Sync.
|
2022-11-04 12:41:55 +01:00 |
|
Asger F
|
4ae90e35d5
|
Ruby: inline transitive class-hierarchy getters
|
2022-11-04 08:50:33 +01:00 |
|
Asger F
|
472a10fd54
|
Ruby: direct -> immediate
|
2022-11-04 08:49:01 +01:00 |
|
Michael Nebel
|
3c8fb0520e
|
C#: Sync files.
|
2022-11-04 08:20:53 +01:00 |
|
Tom Hvitved
|
d3488da0c2
|
Data flow: Sync files
|
2022-11-03 15:52:30 +01:00 |
|
Tom Hvitved
|
cc87d2e38b
|
Data flow: Restrict public PathNodes to those that may reach a sink
|
2022-11-03 15:52:30 +01:00 |
|
Asger F
|
0f1b3486de
|
Ruby: Use another join order for nested constant lookup
|
2022-11-03 10:47:39 +01:00 |
|
Asger F
|
a195ea942e
|
Ruby: only drop to CFG layer for getConstantValue()
|
2022-11-03 10:18:31 +01:00 |
|
Asger F
|
cf4a3e0bbe
|
Ruby: 'a' -> 'an' in a qldoc
|
2022-11-03 10:13:39 +01:00 |
|
Asger F
|
fe8945b5c9
|
Ruby: Rename getCanonicalEnclosing/Nested module
getCanonicalEnclosingModule -> getParentModule
getCanonicalNestedModule -> getNestedModule
|
2022-11-03 10:10:47 +01:00 |
|
Asger F
|
bd2a065562
|
Ruby: rename ConstantValue::getX -> fromX
|
2022-11-03 10:03:40 +01:00 |
|
erik-krogh
|
f3741ff1e4
|
changes based on review
|
2022-11-03 09:41:05 +01:00 |
|
Dave Bartolomeo
|
499f20f6e8
|
Merge pull request #11004 from dbartol/dbartol/use-workspace-versions
|
2022-11-02 20:02:48 -04:00 |
|
Tom Hvitved
|
46631d6eaf
|
Merge pull request #10931 from hvitved/ruby/fix-flow-into-phis
Ruby: Fix flow steps into phi nodes
|
2022-11-02 21:07:06 +01:00 |
|
Dave Bartolomeo
|
a475e5758d
|
Merge remote-tracking branch 'upstream/main' into dbartol/use-workspace-versions
|
2022-11-02 12:38:03 -04:00 |
|
erik-krogh
|
6bc12e8f2b
|
Merge branch 'main' into formatTaint
|
2022-11-02 13:39:30 +01:00 |
|
erik-krogh
|
33cca29a8e
|
drop down to the CFG instead of the AST to better support de-sugaring
|
2022-11-02 11:23:01 +01:00 |
|
Tom Hvitved
|
2d5b9c12a6
|
Ruby: Avoid calls to deprecated SSA predicates
|
2022-11-02 09:37:28 +01:00 |
|
erik-krogh
|
c15f63ce62
|
sync files
|
2022-11-01 21:35:27 +01:00 |
|
Dave Bartolomeo
|
49c4c554c4
|
Merge from main
|
2022-11-01 13:22:40 -04:00 |
|