Edoardo Pirovano
|
6c33ddcd47
|
Merge pull request #11349 from github/edoardo/2.11.4-mergeback
Merge `rc/3.8` into `main`
|
2022-11-21 18:08:27 +00:00 |
|
Erik Krogh Kristensen
|
b4661f4a59
|
Merge pull request #11245 from erik-krogh/rb-redosMod
Ruby: use the shared regex pack
|
2022-11-21 15:34:20 +01:00 |
|
github-actions[bot]
|
e105c13e77
|
Release preparation for version 2.11.4
|
2022-11-17 16:40:45 +00:00 |
|
Harry Maclean
|
762ebad66e
|
Ruby: Add change note
|
2022-11-16 13:46:51 +13:00 |
|
erik-krogh
|
f6255e497b
|
Merge branch 'main' into rb-redosMod
|
2022-11-15 17:14:19 +01:00 |
|
Nick Rolfe
|
8d854e0a6b
|
Merge pull request #11252 from github/nickrolfe/active_support_enumerable
Ruby: add flow summary for Enumerable#index_by
|
2022-11-15 10:40:42 +00:00 |
|
erik-krogh
|
10fff4e2ef
|
Merge branch 'main' into rb-redosMod
|
2022-11-14 21:31:10 +01:00 |
|
Nick Rolfe
|
c80fbff648
|
Ruby: add changenote for Enumerable#index_by flow summary
|
2022-11-14 12:47:50 +00:00 |
|
Nick Rolfe
|
83b3312467
|
Merge pull request #11207 from github/nickrolfe/arel-sql
Ruby: add `SqlConstruction` concept, and implement it for calls to `Arel.sql`
|
2022-11-14 10:21:37 +00:00 |
|
Nick Rolfe
|
e3ebf1c668
|
Merge pull request #11187 from github/nickrolfe/actioncable
Ruby: add ActionCable channel RPC params as remote flow sources
|
2022-11-11 11:32:13 +00:00 |
|
Nick Rolfe
|
0337ccb93a
|
Ruby: add change notes for Arel.sql / SqlConstruction changes
|
2022-11-10 14:11:14 +00:00 |
|
Nick Rolfe
|
199b3f4d71
|
Ruby: add change note for ActionCable channel remote flow sources
|
2022-11-09 14:18:44 +00:00 |
|
Nick Rolfe
|
865d0ca64a
|
Ruby: add changenote for ActiveSupport Hash extension summaries
|
2022-11-08 15:52:21 +00:00 |
|
Harry Maclean
|
d392cdaab6
|
Merge pull request #11022 from hmac/try-code-injection
Ruby: try/try! as code execution
|
2022-11-08 09:42:52 +13:00 |
|
erik-krogh
|
7a8e7150f0
|
add change-note
|
2022-11-07 14:36:55 +01:00 |
|
Dave Bartolomeo
|
013b7eff1c
|
Apply suggestions from code review
Co-authored-by: Jeroen Ketema <93738568+jketema@users.noreply.github.com>
|
2022-11-04 18:46:32 -04:00 |
|
github-actions[bot]
|
508327235a
|
Release preparation for version 2.11.3
|
2022-11-04 20:16:23 +00:00 |
|
Harry Maclean
|
0dd63c007e
|
Ruby: Add change note
|
2022-10-31 11:53:22 +13:00 |
|
Harry Maclean
|
ca7b48c3d5
|
Add change note
|
2022-10-28 11:31:55 +13:00 |
|
thiggy1342
|
3659eaa780
|
add markdown file extension
|
2022-10-25 10:13:19 -04:00 |
|
thiggy1342
|
952ad6ea46
|
Merge branch 'main' into expand-ruby-ssrf-sinks-faraday-connection-new
|
2022-10-24 09:52:24 -04:00 |
|
Nick Rolfe
|
9fb436e22b
|
Ruby: add change note for localTaintStep fix
|
2022-10-21 16:33:29 +01:00 |
|
thiggy1342
|
4e5c1f210d
|
Update ruby/ql/lib/change-notes/2022-10-20-expand-faraday-model-for-ssrf-sink
Co-authored-by: Rahul Zhade <rzhade3@users.noreply.github.com>
|
2022-10-20 17:33:17 -04:00 |
|
thiggy1342
|
244a3329e0
|
Merge branch 'main' into expand-ruby-ssrf-sinks-faraday-connection-new
|
2022-10-20 16:37:57 -04:00 |
|
thiggy1342
|
4c3e3e442a
|
Add Faraday::Connection.new as sink for SSRF query
|
2022-10-20 20:32:08 +00:00 |
|
Arthur Baars
|
45c9a0d0b1
|
Apply suggestions from code review
Co-authored-by: Jeroen Ketema <93738568+jketema@users.noreply.github.com>
|
2022-10-20 15:22:29 +02:00 |
|
github-actions[bot]
|
9a0848bbc4
|
Release preparation for version 2.11.2
|
2022-10-20 11:05:19 +00:00 |
|
erik-krogh
|
dfdf8c7869
|
add change-note
|
2022-10-14 13:28:36 +02:00 |
|
Arthur Baars
|
9ccf5a7798
|
Merge pull request #10749 from aibaars/run_request
Ruby: treat Faraday#run_request as remote source
|
2022-10-14 12:24:39 +02:00 |
|
Harry Maclean
|
7d23170fb2
|
Merge pull request #10602 from hmac/hmac/actiondispatch-request
Ruby: Model ActionDispatch::Request
|
2022-10-14 22:17:20 +13:00 |
|
Arthur Baars
|
9abd599024
|
Ruby: treat Faraday#run_request as remote source
|
2022-10-13 15:44:21 +02:00 |
|
Harry Maclean
|
8e55e62b15
|
Ruby: Add change note
|
2022-10-13 13:24:16 +13:00 |
|
Alex Ford
|
0536d4b540
|
Merge branch 'main' into ruby/activejob-deserialize
|
2022-10-12 15:04:12 +01:00 |
|
Nick Rolfe
|
e38cfd5f7d
|
Ruby: add changenote for ActionMailer params
|
2022-10-10 10:25:19 +01:00 |
|
Alex Ford
|
d0bdbe65ef
|
Ruby: ActiveJob::Serializers.deserialize changenote
|
2022-10-09 22:47:52 +01:00 |
|
Dave Bartolomeo
|
5ee7986649
|
Merge pull request #10736 from github/post-release-prep/codeql-cli-2.11.1
Post-release preparation for codeql-cli-2.11.1
|
2022-10-07 14:23:31 -04:00 |
|
Harry Maclean
|
75cb0efecb
|
Merge pull request #10538 from hmac/hmac/actioncontroller-parameters
Ruby: Model flow through ActionController::Parameters
|
2022-10-07 22:21:40 +13:00 |
|
github-actions[bot]
|
a02dcdc5e1
|
Release preparation for version 2.11.1
|
2022-10-07 02:20:28 +00:00 |
|
Nick Rolfe
|
2315a177fe
|
Ruby: add changenote for ActionView/Controller class renames
|
2022-10-04 16:22:11 +01:00 |
|
Harry Maclean
|
42a97b26bb
|
Merge pull request #10316 from hmac/hmac/actionview
Ruby: Model ActionView
|
2022-10-04 08:16:16 +13:00 |
|
Harry Maclean
|
32baf67b07
|
Fix change note month
|
2022-10-03 09:46:01 +13:00 |
|
Harry Maclean
|
fa1ae26fab
|
Add change note
|
2022-10-03 09:46:01 +13:00 |
|
Harry Maclean
|
ba83b7c6c7
|
Merge pull request #10599 from hmac/hmac/actioncontroller-datastreaming
Ruby: Model send_file
|
2022-10-03 09:44:05 +13:00 |
|
Harry Maclean
|
4a39bc8f47
|
Merge pull request #10598 from hmac/hmac/actioncontroller-metal
Ruby: Identify ActionController::Metal controllers
|
2022-09-30 13:07:03 +13:00 |
|
Harry Maclean
|
0e5aa97c46
|
Fix changenote month
|
2022-09-29 09:24:42 +13:00 |
|
Harry Maclean
|
76cfd44478
|
Add change note
|
2022-09-29 09:24:42 +13:00 |
|
Harry Maclean
|
e7d19e849f
|
Merge pull request #10090 from hmac/hmac/activestorage
Ruby: Model Activestorage
|
2022-09-29 09:16:25 +13:00 |
|
Harry Maclean
|
adb8368e07
|
Add change note
|
2022-09-28 12:16:12 +13:00 |
|
Harry Maclean
|
eada74a15c
|
Add change note
|
2022-09-28 11:43:31 +13:00 |
|
Harry Maclean
|
9709aa87fb
|
Fix changenote month
|
2022-09-27 15:23:12 +13:00 |
|