Geoffrey White
|
993154ed57
|
Rust: Avoid duplicating sinks.
|
2025-11-21 19:34:16 +00:00 |
|
Geoffrey White
|
0ea28b4026
|
Rust: Test .expected changes.
|
2025-11-21 18:57:06 +00:00 |
|
Geoffrey White
|
ff8032a4ec
|
Rust: Fix after merge.
|
2025-11-21 18:53:57 +00:00 |
|
Geoffrey White
|
eb674d08d6
|
Rust: Reinstate the original function names model but call it a heuristic now.
|
2025-11-21 18:46:12 +00:00 |
|
Geoffrey White
|
2ce4c47646
|
Rust: More sinks from the MRVA-1000.
|
2025-11-21 18:43:35 +00:00 |
|
Geoffrey White
|
80615056c0
|
Merge remote-tracking branch 'upstream/main' into cert-checks
|
2025-11-21 18:40:40 +00:00 |
|
Geoffrey White
|
988aca1f85
|
Rust: Correct QLDoc comment.
|
2025-11-21 18:13:08 +00:00 |
|
Geoffrey White
|
03fc4cb0aa
|
Merge remote-tracking branch 'upstream/main' into access-invalid-pointer-fp
|
2025-11-21 17:39:56 +00:00 |
|
Geoffrey White
|
9db1722060
|
Rust: Accept consistency check changes.
|
2025-11-21 17:35:34 +00:00 |
|
Geoffrey White
|
e01c871b70
|
Rust: Accept changes to the dataflow/sources/file test.
|
2025-11-21 17:12:23 +00:00 |
|
Geoffrey White
|
3ad014b2f9
|
Rust: Additional sinks found in MRVA-1000.
|
2025-11-21 16:33:59 +00:00 |
|
Geoffrey White
|
ace7a77fd6
|
Rust: Switch to MaD models.
|
2025-11-21 16:27:52 +00:00 |
|
Geoffrey White
|
785754ec65
|
Rust: Switch the query to taint flow, since some taint summaries are relevant now.
|
2025-11-21 15:02:29 +00:00 |
|
Geoffrey White
|
89a9c46547
|
Rust: Second change note.
|
2025-11-21 15:02:27 +00:00 |
|
Geoffrey White
|
aca7877be2
|
Rust: Add some missing path / file metadata models.
|
2025-11-21 15:02:25 +00:00 |
|
Geoffrey White
|
8145264b77
|
Rust: Add threat model sources as additional sources for the query.
|
2025-11-21 14:40:11 +00:00 |
|
Geoffrey White
|
2da0814f65
|
Rust: Add test case involving taint.
|
2025-11-21 14:39:15 +00:00 |
|
Anders Schack-Mulligen
|
b1ed72d760
|
Merge pull request #20886 from aschackmull/java/rangeanalysis-longliterals
Java: Recognize int-sized long literals.
|
2025-11-21 13:35:14 +01:00 |
|
Owen Mansel-Chan
|
d2fc6a7b5b
|
Merge branch 'main' into java-kotlin-sensitive-logging-substring-barriers
|
2025-11-21 12:20:04 +00:00 |
|
Anders Schack-Mulligen
|
298e4cfcc5
|
Java: Recognize int-sized long literals.
|
2025-11-21 12:53:39 +01:00 |
|
Michael Nebel
|
60826bd18a
|
Merge pull request #20837 from michaelnebel/csharp/dotnet10
C#: Improve the logic for downloading .NET and setting environment variables.
|
2025-11-21 12:41:08 +01:00 |
|
Michael Nebel
|
638c98bba3
|
Merge pull request #20832 from michaelnebel/csharp/dependencycaching
C#: Add extractor option for the dependency directory in BMN.
|
2025-11-21 12:38:28 +01:00 |
|
Ian Lynagh
|
6c7370ea95
|
C++: Add up/downgrade scripts
|
2025-11-21 11:30:58 +00:00 |
|
Ian Lynagh
|
c2f96b94e3
|
C++: Update stats
|
2025-11-21 11:30:40 +00:00 |
|
Ian Lynagh
|
d5399300e9
|
C++: Add databaseMetadata and overlayChangedFiles tables to dbscheme
|
2025-11-21 11:30:40 +00:00 |
|
Anders Schack-Mulligen
|
8d72040e8f
|
Merge pull request #20772 from aschackmull/java/ssa-deprecate
Java: Add deprecation annotations in SSA
|
2025-11-21 12:30:31 +01:00 |
|
Owen Mansel-Chan
|
ec381e4ec5
|
Use range analysis and improve tests
|
2025-11-21 10:31:50 +00:00 |
|
Michael Nebel
|
5c454d23e8
|
C#: Fix typo.
|
2025-11-21 10:39:59 +01:00 |
|
Michael Nebel
|
138441b662
|
C#: Address review comments.
|
2025-11-21 10:39:57 +01:00 |
|
Michael Nebel
|
90dbb7a8eb
|
C#: Add change note.
|
2025-11-21 10:39:56 +01:00 |
|
Michael Nebel
|
2700843a9c
|
C#: Add an integration test for setting the dependency directory in BMN.
|
2025-11-21 10:39:54 +01:00 |
|
Michael Nebel
|
1256ccf2eb
|
C#: Add extractor option for buildless dependency directory.
|
2025-11-21 10:39:52 +01:00 |
|
Michael Nebel
|
e76e7ab26a
|
C#: Read from dependency directory from extractor option.
|
2025-11-21 10:39:51 +01:00 |
|
Anders Schack-Mulligen
|
30d68d8906
|
Java: Add missing deprecated annotations.
|
2025-11-21 10:14:13 +01:00 |
|
aegilops
|
ce136684e6
|
Fixed formatting
|
2025-11-20 17:39:32 +00:00 |
|
aegilops
|
e904520779
|
Fixed formatting
|
2025-11-20 17:34:42 +00:00 |
|
aegilops
|
29a5b27b13
|
Removed bounds checking and only using literals - bounded() predicate did not work
|
2025-11-20 17:31:56 +00:00 |
|
Tom Hvitved
|
132f02c51b
|
Update rust/ql/lib/codeql/rust/internal/PathResolution.qll
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2025-11-20 14:34:02 +01:00 |
|
Mathias Vorreiter Pedersen
|
14f9997eb3
|
Merge pull request #20862 from MathiasVP/union-content-field-content-common-base-class
C++: Create a common base class for 'FieldContent' and 'UnionContent'
|
2025-11-20 13:14:29 +00:00 |
|
Paul Hodgkinson
|
801cd72965
|
Merge branch 'main' into java-kotlin-sensitive-logging-substring-barriers
|
2025-11-20 12:24:22 +00:00 |
|
aegilops
|
1e67907516
|
Merge commit
|
2025-11-20 12:22:39 +00:00 |
|
aegilops
|
62ee6d3a33
|
Made changes requested by reviewers - bounded() for range checking, style and better comments
|
2025-11-20 11:46:42 +00:00 |
|
Paolo Tranquilli
|
240c637e7a
|
Merge pull request #20868 from github/redsun82/java-doc
Java: add missing QLDoc
|
2025-11-20 12:08:16 +01:00 |
|
Owen Mansel-Chan
|
05085a8e82
|
Merge pull request #20666 from owen-mc/go/promote-weak-crypto-algorithm
Go: promote `go/weak-crypto-algorithm`
|
2025-11-20 11:03:05 +00:00 |
|
Tom Hvitved
|
0f40b3ccb8
|
Merge pull request #20842 from hvitved/rust/path-resolution-extern-crate-visibility
Rust: Handle `pub extern crate` in path resolution
|
2025-11-20 11:59:05 +01:00 |
|
Tom Hvitved
|
4d4a677da0
|
Merge pull request #20869 from hvitved/rust/dataflow-ast
Rust: Base `DataFlow::Node` on AST instead of CFG
|
2025-11-20 11:34:40 +01:00 |
|
Asger F
|
613895e0c0
|
Merge pull request #20424 from asgerf/js/overlay-manual-v4
JS: Add overlay annotations
|
2025-11-20 11:10:46 +01:00 |
|
Tom Hvitved
|
d4fdf956a0
|
Address review comments
|
2025-11-20 11:03:53 +01:00 |
|
Tom Hvitved
|
e4853ab060
|
Add change note
|
2025-11-19 19:37:41 +01:00 |
|
Tom Hvitved
|
d2bb53a81e
|
Rust: Run codegen
|
2025-11-19 19:37:40 +01:00 |
|