Asger F
|
f4d62c3225
|
JS: Port HttpToFileAccess
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
2935aac559
|
JS: Port FileAccessToHttp
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
8e95a90d03
|
JS: Port UntrustedDataToExternalAPI
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
d324e554f3
|
JS: Port DeepObjectResourceExhaustion
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
30f1fbc10d
|
JS: Port CorsMisconfigurationForCredentials
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
f14303acea
|
JS: Port ConditionalBypass
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
2296a273c4
|
JS: Port BuildArtifactLeak
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
85617c292e
|
JS: Port BrokenCryptoAlgorithm
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
7a1aead831
|
JS: Port ZipSlip
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
e9189f965f
|
JS: Port LogInjection
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
ae680e747b
|
JS: Port LoopBoundInjection
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
40d68cb4dc
|
JS: Port CleartextStorage
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
b8a6f81669
|
JS: Port CleartextLogging
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
a5c221fcfc
|
JS: Port PrototypePollutingMergeCall
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
adf7d5409d
|
JS: Port PrototypePollutingFunction
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
f1f45927b1
|
JS: Port PrototypePollutingAssignment
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
81d2721248
|
JS: Port ClientSideUrlRedirect
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
46fd727a55
|
JS: Port ServerSideUrlRedirect
|
2023-10-13 13:15:04 +02:00 |
|
Asger F
|
92816b1c9a
|
JS: Port ClientSideRequestForgery
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
b2216627be
|
JS: Port RequestForgery
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
d7b4e0c206
|
JS: Port ExceptionXss
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
cf5450dbd5
|
JS: Port XssThroughDom
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
5f05232e02
|
JS: Port StoredXss
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
46b90e51fc
|
JS: Port ReflectedXss
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
e091fdefa4
|
JS: Port DomBasedXss
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
547a8a958a
|
JS: Port SqlInjection
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
65e9706c8e
|
JS: Port TaintedPath
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
fcfab5238e
|
JS: Port CodeInjection
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
17233a6749
|
JS: Port CommandInjection
|
2023-10-13 13:15:03 +02:00 |
|
Asger F
|
449ec72dbe
|
JS: Port experimental queries
|
2023-10-13 13:15:03 +02:00 |
|
Arthur Baars
|
a9a21aa313
|
Rename DynamicImportExpr::getImport{Attributes => Options}
|
2023-10-12 13:00:39 +02:00 |
|
Arthur Baars
|
a1c1f7b910
|
Add tests for deprecated 'assert' syntax
|
2023-10-12 13:00:39 +02:00 |
|
Arthur Baars
|
f38d2e1b89
|
Replace 'assert' with 'with' in QL test files
|
2023-10-12 13:00:39 +02:00 |
|
Arthur Baars
|
c28004f2a6
|
Rename 'getImportAssertion()' to 'getImportAttributes()' in QL library
|
2023-10-12 13:00:39 +02:00 |
|
amammad
|
3899f2cdf3
|
upgrade execa scripts
|
2023-10-12 10:44:57 +02:00 |
|
amammad
|
b24c6fd579
|
for demonstration
|
2023-10-11 17:34:33 +02:00 |
|
amammad
|
4cd3618dcd
|
Merge branch 'main' into amammad-js-CodeInjection_execa
|
2023-10-11 13:27:26 +02:00 |
|
Maiky
|
c0e6d7c049
|
Merge branch 'github:main' into maikypedia/javascript-cors
|
2023-10-11 12:20:42 +02:00 |
|
amammad
|
32859eb057
|
move to experimental
|
2023-10-10 22:46:44 +02:00 |
|
amammad
|
6f73e9c3ba
|
revert for in additional steps
|
2023-10-10 22:12:37 +02:00 |
|
amammad
|
242f7e1c53
|
update pg :)
|
2023-10-10 11:42:32 +02:00 |
|
amammad
|
18edef6ea4
|
add better-sqlite3 tests
|
2023-10-10 11:20:17 +02:00 |
|
amammad
|
00b6e1f0b0
|
fix tests
|
2023-10-08 11:03:19 +02:00 |
|
amammad
|
aff6f00450
|
comments improvement,separate module file, fix tests
|
2023-10-07 12:02:39 +02:00 |
|
amammad
|
5a49f6bb9b
|
fix tests
|
2023-10-06 22:10:57 +02:00 |
|
erik-krogh
|
7ca0996912
|
add a taint-tracking tests for calls to tagged template strings
|
2023-10-06 21:39:42 +02:00 |
|
erik-krogh
|
9b6501787a
|
add API-graph test for the new tagged template calls
|
2023-10-06 21:25:34 +02:00 |
|
erik-krogh
|
18e6a5491c
|
recognize tagged templates as DataFlow::CallNode
|
2023-10-06 21:14:00 +02:00 |
|
amammad
|
e45268cd4d
|
improve and fix bugs and add Form Flow Sources test files
|
2023-10-06 21:01:42 +02:00 |
|
erik-krogh
|
951ed01d6b
|
combine the library-tests/CallGraphs/FullTest tests into one file
|
2023-10-06 20:57:09 +02:00 |
|