Asger F
|
0110610c6a
|
Ruby: overhaul API graphs
|
2023-06-19 12:01:42 +02:00 |
|
yoff
|
f5f822ca2d
|
Merge pull request #13395 from yoff/python/container-summaries-3
|
2023-06-14 17:13:49 +02:00 |
|
Rasmus Lerchedahl Petersen
|
9a1e895fdc
|
Python: missed removing these
`set.add` and `list.append` do not return a value
|
2023-06-14 14:51:21 +02:00 |
|
Michael Nebel
|
afec9b05e9
|
Merge pull request #13147 from michaelnebel/csharp/entityframeworkrefactor
C#: Use synthetic global in the EntityFramework code instead of jump steps.
|
2023-06-14 13:47:56 +02:00 |
|
Rasmus Lerchedahl Petersen
|
3b558a0044
|
python: remove spurious return flow
|
2023-06-14 13:35:37 +02:00 |
|
yoff
|
38cca08a86
|
Apply suggestions from code review
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2023-06-14 13:27:33 +02:00 |
|
Anders Schack-Mulligen
|
1a4fca334f
|
Merge pull request #13273 from aschackmull/dataflow/summarynode-refactor
Dataflow: Refactor FlowSummaryImpl to synthesize nodes independently from DataFlow::Node.
|
2023-06-14 09:38:36 +02:00 |
|
Rasmus Lerchedahl Petersen
|
f1de753400
|
python: add changenote
|
2023-06-13 21:59:51 +02:00 |
|
Rasmus Lerchedahl Petersen
|
4b4b9bf9da
|
python: add missing summaries
For append/add:
The new results in the experimental tar slip query
show that we do not recognize the sanitisers.
|
2023-06-13 20:22:21 +02:00 |
|
Rasmus Lerchedahl Petersen
|
b72c93ff4f
|
python: remove remaining explicit taint steps
|
2023-06-13 20:22:20 +02:00 |
|
yoff
|
1d65284011
|
Merge pull request #13209 from yoff/python/container-summaries-2
python: Container summaries, part 2
|
2023-06-13 18:17:09 +02:00 |
|
Rasmus Lerchedahl Petersen
|
775f3eaf56
|
python: make copy a dataflow step
|
2023-06-13 17:07:41 +02:00 |
|
yoff
|
4056358863
|
Merge pull request #13438 from RasmusWL/flask-render-string
Python: Add modeling of `flask.render_template_string`
|
2023-06-13 14:56:43 +02:00 |
|
Rasmus Wriedt Larsen
|
2b7fc94aef
|
Python: Fix validTest.py expectation
|
2023-06-13 12:11:28 +02:00 |
|
Anders Schack-Mulligen
|
2d616d494e
|
C#/Ruby: Add fields as per review comments.
|
2023-06-13 11:26:30 +02:00 |
|
Rasmus Lerchedahl Petersen
|
b709ed47e1
|
python: add test
|
2023-06-13 11:20:15 +02:00 |
|
Jeroen Ketema
|
c3ba206b6a
|
Merge pull request #13346 from jketema/inline-2
Update inline expectation tests to use parameterized module
|
2023-06-13 10:10:55 +02:00 |
|
yoff
|
2a5173c331
|
Update python/ql/lib/semmle/python/frameworks/Stdlib.qll
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2023-06-13 10:04:46 +02:00 |
|
Rasmus Wriedt Larsen
|
6526364045
|
Python: Add modeling of flask.render_template_string
|
2023-06-12 21:18:31 +02:00 |
|
Erik Krogh Kristensen
|
798f3880c9
|
Merge pull request #13402 from erik-krogh/deps-some-py
Py: delete some old deprecations
|
2023-06-12 11:29:44 +02:00 |
|
Calum Grant
|
0163fb8d9f
|
Merge pull request #13391 from github/RasmusWL/experimental-query-id
Python: Avoid duplicated query-id
|
2023-06-12 10:10:51 +01:00 |
|
Anders Schack-Mulligen
|
5062442982
|
Go/Python/Ruby/Swift: Add stub.
|
2023-06-09 15:39:28 +02:00 |
|
Anders Schack-Mulligen
|
98f51d7f29
|
Dataflow: Sync.
|
2023-06-09 15:39:28 +02:00 |
|
Anders Schack-Mulligen
|
6020e4d0e3
|
C#/Go/Python/Ruby/Swift: Fix some more references.
|
2023-06-09 15:30:38 +02:00 |
|
Anders Schack-Mulligen
|
1e3b960c1b
|
Python: Adjust to FlowSummaryImpl changes.
|
2023-06-09 15:27:17 +02:00 |
|
Anders Schack-Mulligen
|
2cc5bde925
|
Dataflow: Sync.
|
2023-06-09 15:27:17 +02:00 |
|
erik-krogh
|
42d67d0137
|
add change-note
|
2023-06-09 15:24:12 +02:00 |
|
erik-krogh
|
6dfeb2536b
|
delete old deprecations
|
2023-06-09 15:12:23 +02:00 |
|
Jeroen Ketema
|
8f599faf85
|
Python: Rewrite inline expectation tests to use parameterized module
|
2023-06-09 10:42:29 +02:00 |
|
Anders Schack-Mulligen
|
d230509905
|
Dataflow: Address review comments.
|
2023-06-09 08:37:36 +02:00 |
|
Anders Schack-Mulligen
|
4399138c82
|
Dataflow: Fix QL4QL alert.
|
2023-06-09 08:37:36 +02:00 |
|
Anders Schack-Mulligen
|
53f2b8aab0
|
Dataflow: Sync.
|
2023-06-09 08:37:36 +02:00 |
|
Anders Schack-Mulligen
|
fd832416d8
|
Dataflow: Add empty type strengthening predicate for languages without type pruning.
|
2023-06-09 08:37:35 +02:00 |
|
Anders Schack-Mulligen
|
e8cea79f1d
|
Dataflow: Sync.
|
2023-06-09 08:37:35 +02:00 |
|
yoff
|
d59263af0e
|
Merge pull request #13398 from github/tausbn/python-update-syntax-error-expected-files
Python: Update expected output for syntax error queries
|
2023-06-08 10:10:42 +02:00 |
|
Tom Hvitved
|
cee70883f0
|
Merge pull request #12964 from hvitved/ruby/remove-synth-returns
Ruby: Remove canonical return nodes
|
2023-06-08 10:07:48 +02:00 |
|
Taus
|
19e1bab102
|
Python: Update expected output for syntax error queries
|
2023-06-07 15:26:52 +00:00 |
|
Rasmus Wriedt Larsen
|
0c8b4251cf
|
Python: Avoid duplicated query-id
|
2023-06-07 10:07:01 +02:00 |
|
Tom Hvitved
|
48ac3e58ee
|
Python: Use CallGraphConstruction in call graph construction
|
2023-06-07 09:02:03 +02:00 |
|
Tom Hvitved
|
4bf124bffe
|
Ruby/Python: Add CallGraphConstruction module for recursive type-tracking based call graph construction
|
2023-06-07 09:02:03 +02:00 |
|
Taus
|
c4bfb21f0f
|
Merge pull request #13371 from github/nickrolfe/python-location-tostring
Python: avoid selecting `getLocation()`
|
2023-06-06 12:05:51 +02:00 |
|
Nick Rolfe
|
02395867c8
|
Python: avoid selecting getLocation() in py/truncated-division
|
2023-06-05 13:42:46 +01:00 |
|
Nick Rolfe
|
c67a350e36
|
Python: avoid selecting getLocation() in py/unnecessary-delete
|
2023-06-05 11:16:13 +01:00 |
|
jorgectf
|
3e8c7f72b6
|
Add changenote
|
2023-06-02 18:20:55 +02:00 |
|
jorgectf
|
5608082f35
|
Update py/unsafe-deserialization name
|
2023-06-02 17:57:24 +02:00 |
|
Jeroen Ketema
|
5f64354a70
|
Merge pull request #13353 from jketema/expecation
Fix typo in spelling of expectation
|
2023-06-02 12:29:49 +02:00 |
|
Jeroen Ketema
|
7b17b92aca
|
Fix typo in spelling of expectation
|
2023-06-02 10:36:11 +02:00 |
|
Erik Krogh Kristensen
|
96a720cfa0
|
Merge pull request #13285 from erik-krogh/redoshelp
ReDoS: fix whitespace in the samples in ReDoS.qhelp
|
2023-06-01 15:53:58 +02:00 |
|
Rasmus Lerchedahl Petersen
|
6755bb32fb
|
Python: do not add read steps for collections
|
2023-06-01 15:18:05 +02:00 |
|
Michael Nebel
|
06b02eb3ce
|
Sync files.
|
2023-06-01 09:30:31 +02:00 |
|