Tony Torralba
|
7070c4a2d2
|
Add summaries for ContentResolver and adjacent classes
|
2022-08-23 14:12:35 +02:00 |
|
Chris Smowton
|
0a7350f3bf
|
Merge pull request #10041 from smowton/AddSensitiveApiCalls
Java: support more libraries in hardcoded-credentials queries
|
2022-08-23 10:51:04 +01:00 |
|
Ian Lynagh
|
51ada5c2af
|
Merge pull request #10130 from igfoo/igfoo/non-null-exprs
Kotlin: Fix some more not-null-exprs in the extractor
|
2022-08-23 10:49:45 +01:00 |
|
Tony Torralba
|
085c12a51f
|
Merge pull request #10116 from atorralba/atorralba/static-init-vector-fix
Java: Improve Static Initialization Vector query
|
2022-08-23 11:38:41 +02:00 |
|
Tony Torralba
|
e3c1101b79
|
Merge pull request #10136 from atorralba/atorralba/redos-cwe-tag
Java: Add CWE-1333 tag to Java ReDoS queries
|
2022-08-23 11:07:51 +02:00 |
|
Chris Smowton
|
131d6043c1
|
Add java imports
|
2022-08-23 09:41:00 +01:00 |
|
Joe Farebrother
|
ac79866799
|
Merge pull request #9982 from joefarebrother/rsa-without-oaep
Java: Add query for RSA without OAEP
|
2022-08-23 09:14:46 +01:00 |
|
Tony Torralba
|
6b4cfbbacd
|
Add change note
|
2022-08-23 10:00:10 +02:00 |
|
Tony Torralba
|
cd10f559ca
|
Add CWE-1333 tag to Java ReDoS queries
|
2022-08-23 09:56:59 +02:00 |
|
Tony Torralba
|
a3f27d4abe
|
Merge pull request #10131 from atorralba/atorralba/path-steps
Java: Add new java.nio.Path{,s} summary models
|
2022-08-23 09:47:34 +02:00 |
|
Tony Torralba
|
da3288fced
|
Move change note to src
|
2022-08-23 09:40:34 +02:00 |
|
Tony Torralba
|
422abc1a18
|
Add change note
|
2022-08-22 16:22:19 +02:00 |
|
Erik Krogh Kristensen
|
eadd85bce9
|
Merge pull request #10073 from erik-krogh/XMLXml
rename all occurrences of XML to Xml
|
2022-08-22 16:18:27 +02:00 |
|
Tamás Vajk
|
aa0ff2b53f
|
Merge pull request #10129 from tamasvajk/kotlin-fix-comment-type-alias
Kotlin: Extract type alias doc comments
|
2022-08-22 16:10:50 +02:00 |
|
Tony Torralba
|
ee6ac744c5
|
Add new Path steps and tests
|
2022-08-22 15:54:20 +02:00 |
|
Ian Lynagh
|
d5b414f163
|
Kotlin: Fix some more not-null-exprs in the extractor
|
2022-08-22 14:16:58 +01:00 |
|
erik-krogh
|
9c95dcc126
|
add change-note
|
2022-08-22 14:09:19 +02:00 |
|
erik-krogh
|
2ac5441aec
|
rename the XMLDTD class to XmlDTD
|
2022-08-22 14:09:19 +02:00 |
|
erik-krogh
|
1a89ddae5d
|
update some comments from XML to Xml
|
2022-08-22 14:09:19 +02:00 |
|
erik-krogh
|
ce9f69a639
|
rename all occurrences of XML to Xml
|
2022-08-22 14:08:31 +02:00 |
|
Tony Torralba
|
5e815fb359
|
Merge branch 'main' into atorralba/static-init-vector-fix
|
2022-08-22 13:31:00 +02:00 |
|
Tony Torralba
|
c35fbf9abc
|
Add more sanitizers
|
2022-08-22 13:20:02 +02:00 |
|
Tony Torralba
|
72c204063d
|
Merge pull request #10115 from atorralba/atorralba/fragment-fix
Java: Add support for androidx.fragment.app.Fragment
|
2022-08-22 12:53:19 +02:00 |
|
Tamas Vajk
|
25098ef2d8
|
Kotlin: Extract type alias doc comments
|
2022-08-22 12:31:13 +02:00 |
|
Ian Lynagh
|
584037737e
|
Merge pull request #10113 from igfoo/igfoo/nullexpr
Kotlin: Remove another instance of a not-null-expression
|
2022-08-22 10:52:04 +01:00 |
|
Tony Torralba
|
3314b56ffe
|
Fix Fragment tests after androidx stubs update
|
2022-08-22 11:13:19 +02:00 |
|
Chris Smowton
|
f3ef8510d3
|
Merge pull request #10093 from smowton/smowton/feature/java-singular-locations
Java: pick an arbitrary representative location when an entity has many candidate locations.
|
2022-08-22 09:32:43 +01:00 |
|
Chris Smowton
|
8d20b9cf52
|
Use hasLocationInfo to match several Location fields at once
|
2022-08-19 19:03:17 +01:00 |
|
Chris Smowton
|
3266f1f35f
|
Create 2022-08-19-signular-locations.md
|
2022-08-19 18:42:41 +01:00 |
|
Chris Smowton
|
678ecffea8
|
Accept test changes
|
2022-08-19 18:34:05 +01:00 |
|
Chris Smowton
|
1ea7caf559
|
Fix join ordering in inline-expectations test
|
2022-08-19 18:17:22 +01:00 |
|
Tony Torralba
|
90aa7d8be5
|
Add change note
|
2022-08-19 17:01:37 +02:00 |
|
Tony Torralba
|
3c6c09b0f8
|
No longer require a mode in Cipher.init
|
2022-08-19 16:40:59 +02:00 |
|
Tony Torralba
|
794fd976a9
|
Add androidx Fragment support
|
2022-08-19 16:32:06 +02:00 |
|
Ian Lynagh
|
5d670c6186
|
Kotlin: Remove another instance of a not-null-expression
|
2022-08-19 14:50:06 +01:00 |
|
Chris Smowton
|
949de2a8dd
|
Create 2022-08-19-java-19-support.md
|
2022-08-19 11:15:23 +01:00 |
|
Erik Krogh Kristensen
|
4f93f2b9ba
|
Merge pull request #10076 from erik-krogh/ql-for-ql-fixes
various QL-for-QL fixes
|
2022-08-18 15:46:48 +02:00 |
|
Chris Smowton
|
17dd1f64ec
|
Java: pick an arbitrary representative location when an entity has many candidate locations.
|
2022-08-18 14:29:16 +01:00 |
|
Anders Schack-Mulligen
|
61a2c0dab5
|
Merge pull request #10084 from aschackmull/java/numericcasttainted-barrier
Java: Move sink-constraints into the configuration in NumericCastTainted.ql.
|
2022-08-18 15:22:00 +02:00 |
|
Joe Farebrother
|
e8f027dab2
|
Apply docs suggestions from code review
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
|
2022-08-18 14:21:40 +01:00 |
|
Tamás Vajk
|
ad1cb8f8c7
|
Merge pull request #10065 from tamasvajk/kotlin-1.7.20-Beta
Kotlin: Add support for version 1.7.20-Beta
|
2022-08-18 12:17:10 +02:00 |
|
erik-krogh
|
9e7c0c6ab9
|
revert changing imports in java/
|
2022-08-18 10:19:12 +02:00 |
|
Anders Schack-Mulligen
|
37e5f0438c
|
Java: Add change note.
|
2022-08-18 09:19:32 +02:00 |
|
Tamas Vajk
|
fb9a34851a
|
Apply code review changes
|
2022-08-18 09:01:10 +02:00 |
|
erik-krogh
|
4bc10f9b5c
|
explicitly import required frameworks that were previously implicitly imported
|
2022-08-18 08:40:46 +02:00 |
|
Anders Schack-Mulligen
|
f6eccd390e
|
Java: Move sink-constraints into the configuration.
|
2022-08-17 15:06:55 +02:00 |
|
Tamas Vajk
|
5d01653371
|
Fix gradle exclude list after the version number changes
|
2022-08-17 15:03:37 +02:00 |
|
Anders Schack-Mulligen
|
c3ba632a32
|
Java: Add some type-based sanitizers to SensitiveInfoLog.ql.
|
2022-08-17 14:54:28 +02:00 |
|
Anders Schack-Mulligen
|
6e495ba6e5
|
Merge pull request #10068 from aschackmull/java/summarizedcallable-split
Java: Make synthesized method bodies disjoint from source code.
|
2022-08-17 14:13:56 +02:00 |
|
erik-krogh
|
14d83ab1b5
|
make the framework imports in FlowSources.qll private
|
2022-08-17 13:50:08 +02:00 |
|