Tony Torralba
|
7db1eb98f5
|
Sync files
|
2022-09-08 17:32:03 +02:00 |
|
Tony Torralba
|
1b87167d96
|
Add implicit reads for FlowState sinks and steps
|
2022-09-08 17:26:59 +02:00 |
|
Michael Nebel
|
e265b07a93
|
Merge pull request #10127 from michaelnebel/csharp/clearscontent
C#: Replace clears content with CSV summaries.
|
2022-09-08 09:26:08 +02:00 |
|
Tamás Vajk
|
3410dd589d
|
Merge pull request #9783 from tamasvajk/feature/kotlin-stdlib-mad
Kotlin: Add MaD for stdlib
|
2022-09-07 12:57:23 +02:00 |
|
Anders Schack-Mulligen
|
bc57d87303
|
Java: Address comments.
|
2022-09-06 13:59:54 +02:00 |
|
Tamas Vajk
|
bb82bcabbe
|
Kotlin: move and rename KotlinStdLib.qll to kotlin/StdLib.qll
|
2022-09-02 16:12:21 +02:00 |
|
Michael Nebel
|
5511bc8e28
|
Java/Ruby/Swift: Sync files.
|
2022-09-02 15:17:24 +02:00 |
|
Anders Schack-Mulligen
|
784eef3f2c
|
Java: Support SCCs in TypeFlow.
|
2022-08-31 13:20:00 +02:00 |
|
Michael Nebel
|
1cb6d78d35
|
Merge pull request #10170 from michaelnebel/java/models-io
Java: Update models for commons-io and add negative models.
|
2022-08-31 11:05:09 +02:00 |
|
Anders Schack-Mulligen
|
4070860d2b
|
Merge pull request #10208 from aschackmull/java/dispatch-fixes
Java: A couple of small virtual dispatch fixes
|
2022-08-30 15:03:48 +02:00 |
|
Tony Torralba
|
1f83c5833b
|
Merge pull request #10092 from zbazztian/zbazztian/string.replace-taint
Java: Add additional taint steps for java.lang.String methods
|
2022-08-30 12:24:37 +02:00 |
|
Anders Schack-Mulligen
|
e26a7fc4f3
|
Merge pull request #10173 from zbazztian/spring-crudrepository
Java: Add data flow model for Spring's CrudRepository.save() method
|
2022-08-29 15:00:07 +02:00 |
|
Michael Nebel
|
e8d726606b
|
C#/Java: Add descriptive comment on negative summaries in ExternalFlow.
|
2022-08-29 14:29:32 +02:00 |
|
Michael Nebel
|
290c35e7c6
|
Java: Use negative summary models in unsupported external api telemetry query.
|
2022-08-29 14:28:55 +02:00 |
|
Anders Schack-Mulligen
|
bd6acc0d75
|
Java: Refactor upcastCand, and track type flow for upcasts to unbound generics.
|
2022-08-29 13:57:39 +02:00 |
|
Anders Schack-Mulligen
|
fc415b32c2
|
Java: Bugfix in TypeFlow.
|
2022-08-29 13:50:13 +02:00 |
|
Anders Schack-Mulligen
|
6e7dcfcc6e
|
Merge pull request #10097 from aschackmull/java/unification
Java: Improve virtual dispatch via better unification check and deduplicate code with parameterised module
|
2022-08-29 13:28:04 +02:00 |
|
Anders Schack-Mulligen
|
adfd474fee
|
Java: Move file.
|
2022-08-29 11:50:54 +02:00 |
|
erik-krogh
|
cc7a9ef97a
|
rename more acronyms
|
2022-08-25 20:52:27 +02:00 |
|
Sebastian Bauersfeld
|
a486a89cee
|
Java: Taint flow through org.springframework.data.repository.CrudRepository.save().
|
2022-08-25 17:58:24 +07:00 |
|
Michael Nebel
|
761ed283b6
|
C#/Java/Ruby/Swift: Address review comments.
|
2022-08-24 09:58:54 +02:00 |
|
Michael Nebel
|
30d554503a
|
C#/Java: Fix some QL doc spelling typos.
|
2022-08-24 09:58:53 +02:00 |
|
Michael Nebel
|
160ae934af
|
C#/Java/Ruby/Swift: Fix typo in QL doc.
|
2022-08-24 09:58:53 +02:00 |
|
Michael Nebel
|
37976d56bc
|
C#/Java/Go/Swift: Move CsvValidation back into ExternalFlow.
|
2022-08-24 09:58:53 +02:00 |
|
Michael Nebel
|
581824a9b4
|
C#/Java/Ruby/Swift: Fix various typos.
|
2022-08-24 09:58:53 +02:00 |
|
Michael Nebel
|
9f9129d3c9
|
Java: Introduce column validation for negative summaries.
|
2022-08-24 09:58:52 +02:00 |
|
Michael Nebel
|
4939439982
|
Java: Re-factor CSV Validation into standalone module.
|
2022-08-24 09:58:52 +02:00 |
|
Michael Nebel
|
5255e16816
|
Java: Sync files and make framework specific code.
|
2022-08-24 09:58:51 +02:00 |
|
Michael Nebel
|
15c05e201d
|
Java: Re-factor specialized CSV predicates into overrides of the row predicate.
|
2022-08-24 09:58:46 +02:00 |
|
Anders Schack-Mulligen
|
6b01f02df6
|
Java: Deduplicate unification code as a parameterised module.
|
2022-08-24 09:50:13 +02:00 |
|
Tony Torralba
|
ee6ac744c5
|
Add new Path steps and tests
|
2022-08-22 15:54:20 +02:00 |
|
Sebastian Bauersfeld
|
354a7fd252
|
Make taint flow through java.lang.String.(replace|replaceFirst|replaceAll) more permissive.
|
2022-08-19 17:33:35 +07:00 |
|
Anders Schack-Mulligen
|
df40ccd129
|
Java: Make synthesized method bodies disjoint from source code.
|
2022-08-16 13:36:39 +02:00 |
|
Anders Schack-Mulligen
|
abad133ab5
|
Dataflow: Fix identification of source PathNodes in the presence of source-to-source flow.
|
2022-08-10 15:02:56 +02:00 |
|
Anders Schack-Mulligen
|
cbd6d24b9c
|
Merge pull request #9963 from intrigus-lgtm/java/model-set-properties
Model `java.util.Properties.setProperty`
|
2022-08-10 14:51:00 +02:00 |
|
Anders Schack-Mulligen
|
3d47875b60
|
Dataflow: Generate shorter RA/DIL names.
|
2022-08-05 11:00:56 +02:00 |
|
Anders Schack-Mulligen
|
d3dcc3ce3a
|
Dataflow: Sync.
|
2022-08-05 11:00:56 +02:00 |
|
Anders Schack-Mulligen
|
09d0f8e0ce
|
Dataflow: Replace stage duplication with parameterised modules.
|
2022-08-05 11:00:56 +02:00 |
|
intrigus
|
55618adf6a
|
Model java.util.Properties.setProperty
|
2022-08-04 16:21:48 +02:00 |
|
Tony Torralba
|
33f5620782
|
Add more models
|
2022-07-26 11:06:11 +02:00 |
|
Tony Torralba
|
95db81658b
|
Add CSV models for java.util.Scanner
|
2022-07-26 10:42:24 +02:00 |
|
Chris Smowton
|
b1dd3c2d84
|
Model java.util.Properties.getProperty
|
2022-07-13 13:59:28 +01:00 |
|
Jeroen Ketema
|
55e052af26
|
Merge pull request #9686 from aschackmull/dataflow/no-node-scan
Dataflow performance: Avoid node scans
|
2022-06-29 10:38:56 +02:00 |
|
Tony Torralba
|
e0b4c63a53
|
Add new source kind to CsvValidation
|
2022-06-28 10:16:40 +02:00 |
|
Joe Farebrother
|
0e04f2b2e8
|
Add external storage souces
|
2022-06-28 10:10:27 +02:00 |
|
Anders Schack-Mulligen
|
dc517a758e
|
Autoformat
|
2022-06-23 14:44:40 +02:00 |
|
Anders Schack-Mulligen
|
4a317a25d3
|
Dataflow: Sync.
|
2022-06-23 14:34:52 +02:00 |
|
Anders Schack-Mulligen
|
c27290563a
|
Dataflow: Perf fix, avoid node scans.
|
2022-06-23 14:34:05 +02:00 |
|
Anders Schack-Mulligen
|
df6d68b215
|
Merge pull request #9618 from aschackmull/dataflow/deprecate-barrierguard-class
Dataflow: Deprecate BarrierGuard class
|
2022-06-22 10:44:08 +02:00 |
|
Michael Nebel
|
b4457de58c
|
C#/Java: Fix typo in the QL doc comment.
|
2022-06-20 16:26:07 +02:00 |
|