Tony Torralba
|
929d9dbdfa
|
Merge pull request #13046 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2023-05-05 10:06:53 +02:00 |
|
Arthur Baars
|
0359d29b40
|
Merge pull request #13055 from hmac/tree-sitter-extractor-clippy-fixes
Shared: Fix clippy in shared extractor
|
2023-05-05 09:48:51 +02:00 |
|
Harry Maclean
|
c7e8f0d12a
|
Shared: Pin rust version for shared extractor
|
2023-05-05 06:36:55 +00:00 |
|
Harry Maclean
|
a577bec22c
|
Shared: Fix clippy warnings in shared extractor
|
2023-05-05 06:30:12 +00:00 |
|
github-actions[bot]
|
3d9e5ebfd8
|
Add changed framework coverage reports
|
2023-05-05 00:14:57 +00:00 |
|
Edward Minnix III
|
2d5b35067e
|
Merge pull request #12721 from egregius313/egregius313/java/move-configurations-to-libraries
Java: Move more dataflow configurations to `*Query.qll` files
|
2023-05-04 20:14:22 -04:00 |
|
Robert Marsh
|
e32e28d95f
|
Merge pull request #13035 from MathiasVP/ranked-phi-hack-for-bounded-phi
C++: Work around poor codegen for `forex` in IR-based range analysis
|
2023-05-04 16:48:00 -04:00 |
|
Jami
|
3c74c8bbe0
|
Merge pull request #13019 from jcogs33/jcogs33/url-open-stream-updates
Java: switch `url-open-stream` sink models to `experimentalSinkModel`
|
2023-05-04 15:07:44 -04:00 |
|
Mathias Vorreiter Pedersen
|
27c4408431
|
Merge pull request #12997 from MathiasVP/sync-product-flow-across-calls
C++: Synchronize product dataflow paths on function entry points
|
2023-05-04 17:37:48 +01:00 |
|
Jami
|
4e31c46b0c
|
Merge pull request #13024 from jcogs33/jcogs33/remove-hardcoded-jwt-key-summaries
Java: remove `hardcoded-jwt-key` experimental summary models
|
2023-05-04 11:18:18 -04:00 |
|
Mathias Vorreiter Pedersen
|
5a5240dbf9
|
Merge pull request #12865 from rdmarsh2/rdmarsh2/range-analysis-ast-wrapper
C++: AST-based wrapper for new range analysis
|
2023-05-04 16:10:21 +01:00 |
|
Paolo Tranquilli
|
b511c5f355
|
Merge pull request #13012 from github/redsun82/swift-json
Swift: add infrastructure for emitting JSON diagnostics
|
2023-05-04 17:04:45 +02:00 |
|
Ed Minnix
|
5f3c8fef3f
|
Privacy markers and fixed imports
|
2023-05-04 10:25:17 -04:00 |
|
Ed Minnix
|
3100e98513
|
Add missing change notes and update date
|
2023-05-04 10:25:17 -04:00 |
|
Ed Minnix
|
74fc6382a6
|
Add improper validation of array size query libraries
|
2023-05-04 10:25:17 -04:00 |
|
Ed Minnix
|
c319ee4c0d
|
Add TempDirLocalInformationDisclosureQuery
|
2023-05-04 10:25:16 -04:00 |
|
Ed Minnix
|
b087cf9a0a
|
Add Arithmetic query libraries
|
2023-05-04 10:25:16 -04:00 |
|
Ed Minnix
|
b6361cdd3d
|
Move CWE-190/ArithmeticCommon.qll to semmle.code.java.security
|
2023-05-04 10:25:16 -04:00 |
|
Ed Minnix
|
77ee80fd81
|
Add missing change notes
|
2023-05-04 10:25:16 -04:00 |
|
Ed Minnix
|
24b00bac11
|
Add UnsafeHostnameVerificationQuery
|
2023-05-04 10:25:16 -04:00 |
|
Ed Minnix
|
f4a6f555b4
|
Add NumericCastTaintedQuery
|
2023-05-04 10:25:13 -04:00 |
|
Ed Minnix
|
e65a54b85f
|
Add BrokenCryptoAlgorithmQuery
|
2023-05-04 10:19:12 -04:00 |
|
Ed Minnix
|
4b76564911
|
Add MaybeBrokenCryptoAlgorithmQuery
|
2023-05-04 10:15:00 -04:00 |
|
Ed Minnix
|
e4f47ece43
|
Add ResponseSplittingLocalQuery
|
2023-05-04 10:15:00 -04:00 |
|
Ed Minnix
|
91b3533035
|
Add SqlTaintedLocalQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
a0f7575b34
|
Add StackTraceExposureQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
aff299eafd
|
Add ExecTaintedLocal
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
b39d5088de
|
Add InsecureCookieQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
be24b29e7a
|
Add UrlRedirectLocalQuery.qll
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
0249187282
|
Add ExternallyControlledFormatStringLocalQuery.qll
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
5834e4ac52
|
Add UrlRedirectQuery.qll
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
cc22a7d4b4
|
Add XssLocalQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
c2b6a3f4e0
|
Add XPathInjectionQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
c15ce27957
|
Add SqlConcatenatedQuery
|
2023-05-04 10:14:59 -04:00 |
|
Ed Minnix
|
1af6d5f7b3
|
Add TaintedPermissionsCheckQuery
|
2023-05-04 10:14:59 -04:00 |
|
Kasper Svendsen
|
4035b16ac1
|
Merge pull request #13008 from kaspersv/kaspersv/explicit-this-receivers-shared1
Java, C#: Make implicit this receivers explicit
|
2023-05-04 15:38:45 +02:00 |
|
Owen Mansel-Chan
|
bb3101e649
|
Merge pull request #13022 from owen-mc/go/identify-environment-fixes
Go: `go-autobuilder --identify-environment` fixes
|
2023-05-04 14:30:31 +01:00 |
|
Alex Ford
|
b09772e85c
|
Merge pull request #12893 from alexrford/rb/sqlite3
Ruby: model sqlite3
|
2023-05-04 14:24:45 +01:00 |
|
Arthur Baars
|
0a5647d338
|
Merge pull request #13033 from github/aibaars-patch-2
Update tree-sitter-extractor-test.yml
|
2023-05-04 15:17:33 +02:00 |
|
Paolo Tranquilli
|
7ce1189e36
|
Swift: tweak after review comments
|
2023-05-04 15:14:46 +02:00 |
|
Mathias Vorreiter Pedersen
|
26206a85dc
|
C++: Properly handle setter-related flow in IPA injector.
|
2023-05-04 14:00:17 +01:00 |
|
Anders Schack-Mulligen
|
1185bfc90f
|
Merge pull request #12986 from aschackmull/java/mapvalue-precision
Java: Force high precision for MapValueContent.
|
2023-05-04 14:52:41 +02:00 |
|
Mathias Vorreiter Pedersen
|
f94eb74a7b
|
C++: Move 'rankedPhiInput' to the 'RangeUtils' module and use it in 'RangeAnalysisStage.qll'.
|
2023-05-04 12:20:17 +01:00 |
|
Arthur Baars
|
207ec410f4
|
Turning off clippy warnings for now
|
2023-05-04 13:16:59 +02:00 |
|
Arthur Baars
|
55e426e191
|
Update tree-sitter-extractor-test.yml
Fix workflow
|
2023-05-04 13:07:21 +02:00 |
|
Kasper Svendsen
|
29239939c7
|
Merge pull request #13010 from kaspersv/kaspersv/java-explicit-this-receivers
Java: Make implicit this receivers explicit
|
2023-05-04 13:06:41 +02:00 |
|
Paolo Tranquilli
|
b5c0cd8cac
|
Swift: remove unused third party build file
|
2023-05-04 12:18:02 +02:00 |
|
Paolo Tranquilli
|
d61e366441
|
Swift: replace assert with CODEQL_ASSERT
|
2023-05-04 12:15:58 +02:00 |
|
Owen Mansel-Chan
|
d2cf1a24e0
|
Merge pull request #13014 from owen-mc/go/misc-go-cleanups
Go: Misc go cleanups
|
2023-05-04 10:34:32 +01:00 |
|
Owen Mansel-Chan
|
011c9272cf
|
Remove inconsistent line break in message
|
2023-05-04 10:33:05 +01:00 |
|