github-actions[bot]
|
ee9980b31c
|
Release preparation for version 2.9.2
|
2022-05-12 10:17:28 +00:00 |
|
github-actions[bot]
|
8e4cf190e9
|
Release preparation for version 2.9.1
|
2022-04-28 11:59:05 +00:00 |
|
Harry Maclean
|
ba1d43dd42
|
Merge pull request #8658 from hmac/hmac/insecure-download
Ruby: Add InsecureDownload query
|
2022-04-28 11:07:35 +12:00 |
|
Harry Maclean
|
f35379bf8c
|
Ruby: Add change note for rb/insecure-download
|
2022-04-27 12:47:09 +12:00 |
|
Harry Maclean
|
bbc3043836
|
Add change note for rb/regex/missing-regexp-anchor
|
2022-04-27 10:12:33 +12:00 |
|
Nick Rolfe
|
649d7dd022
|
Merge pull request #8607 from github/nickrolfe/incomplete_sanitization
Ruby: port of `js/incomplete-sanitization`
|
2022-04-26 17:10:24 +01:00 |
|
github-actions[bot]
|
eeaf233c29
|
Release preparation for version 2.9.0
|
2022-04-21 14:49:00 +00:00 |
|
Nick Rolfe
|
9b6e610e24
|
Merge remote-tracking branch 'origin/main' into nickrolfe/incomplete_sanitization
|
2022-04-20 12:05:22 +01:00 |
|
Harry Maclean
|
c3f1fba985
|
Merge pull request #8598 from hmac/hmac/insecure-dep-resolution
Ruby: Add rb/insecure-dependency query
|
2022-04-14 02:09:44 +02:00 |
|
Nick Rolfe
|
a1a7d2c088
|
Ruby: add changenote for rb/incomplete-sanitization
|
2022-04-13 17:32:38 +01:00 |
|
Edoardo Pirovano
|
ce82c54b94
|
Merge branch 'main' into edoardo/3.5-mergeback
|
2022-04-08 15:30:58 +01:00 |
|
github-actions[bot]
|
ee746d20df
|
Release preparation for version 2.8.5
|
2022-04-01 10:39:31 +00:00 |
|
Alex Ford
|
882f78c6f9
|
Merge remote-tracking branch 'origin/main' into ruby/weak-cryptographic-algorithm
|
2022-03-31 17:17:46 +01:00 |
|
Harry Maclean
|
d13bbbaf35
|
Ruby: Add change note for rb/insecure-dependency
|
2022-03-30 13:39:35 +13:00 |
|
Arthur Baars
|
65f8f56095
|
Merge branch 'main' into incomplete-url-string-sanitization
|
2022-03-24 11:27:30 +01:00 |
|
Harry Maclean
|
ff1d96c922
|
Ruby: Add rb/http-to-file-access query
|
2022-03-22 11:09:08 +13:00 |
|
Harry Maclean
|
6c18e1d7ac
|
Merge pull request #8272 from hmac/hmac/tainted-format-string
|
2022-03-22 08:37:47 +13:00 |
|
github-actions[bot]
|
dedc8c2254
|
Release preparation for version 2.8.4
|
2022-03-21 13:25:49 +00:00 |
|
Alex Ford
|
c891c53835
|
Merge pull request #8395 from alexrford/ruby/clear-text-storage
Ruby: add `rb/clear-text-storage-sensitive-data` query
|
2022-03-21 10:05:39 +00:00 |
|
Harry Maclean
|
c73dc8ad0c
|
Ruby: Add change note for rb/tainted-format-string
|
2022-03-21 12:51:47 +13:00 |
|
Arthur Baars
|
bf888f0f0b
|
Merge remote-tracking branch 'upstream/main' into incomplete-url-string-sanitization
Conflicts:
config/identical-files.json
javascript/ql/src/Security/CWE-020/IncompleteUrlSubstringSanitization.ql
javascript/ql/src/Security/CWE-020/IncompleteUrlSubstringSanitization.qll
ruby/ql/src/queries/security/cwe-020/IncompleteUrlSubstringSanitization.qll
|
2022-03-18 16:09:20 +01:00 |
|
Arthur Baars
|
ab93b3784b
|
Merge remote-tracking branch 'upstream/main' into incomplete-hostname
|
2022-03-16 12:31:12 +01:00 |
|
Alex Ford
|
fc232ce55f
|
Ruby: changenote for rb/weak-cryptographic-algorithm
|
2022-03-13 21:25:28 +00:00 |
|
github-actions[bot]
|
6b194bc55f
|
Release preparation for version 2.8.3
|
2022-03-10 19:43:58 +00:00 |
|
Alex Ford
|
0e2709f809
|
Ruby: changenote for rb/clear-text-storage-sensitive-data
|
2022-03-10 17:38:52 +00:00 |
|
Arthur Baars
|
a1873cc803
|
Ruby: IncompleteUrlSubstringSanitization.ql
|
2022-03-07 16:17:32 +01:00 |
|
Arthur Baars
|
9e8930c192
|
Ruby: IncompleteHostnameRegExp.ql
|
2022-03-07 16:10:08 +01:00 |
|
github-actions[bot]
|
20fe22c8c8
|
Release preparation for version 2.8.2
|
2022-02-24 14:57:08 +00:00 |
|
Alex Ford
|
dd383f942f
|
Merge remote-tracking branch 'origin/main' into ruby/clear-text-logging
|
2022-02-17 15:32:31 +00:00 |
|
github-actions[bot]
|
f25fc70b7c
|
Release preparation for version 2.8.1
|
2022-02-10 22:08:24 +00:00 |
|
Alex Ford
|
269722fa86
|
Ruby: rb/clear-text-logging-sensitive-data changenote
|
2022-01-28 17:27:05 +00:00 |
|
Tamás Vajk
|
cc4bb9b02f
|
Update 0.0.8.md
|
2022-01-27 11:49:29 +01:00 |
|
github-actions[bot]
|
634134f283
|
Release preparation for version 2.8.0
|
2022-01-27 10:40:20 +00:00 |
|
Edoardo Pirovano
|
1b539eb4dc
|
Merge branch rc/3.4 into main
|
2022-01-25 16:22:01 +00:00 |
|
Alex Ford
|
9613ff743b
|
Merge pull request #7611 from github/ruby/protect_from_forgery-without-exception
Ruby: flag up `protect_from_forgery` calls without an exception strategy
|
2022-01-20 13:45:30 +00:00 |
|
github-actions[bot]
|
4ce8ccc52b
|
Release preparation for version 2.7.6
|
2022-01-20 08:21:18 +00:00 |
|
Alex Ford
|
45ed5a806c
|
Ruby: changenote for rb/csrf-protection-disabled enhancement
|
2022-01-19 13:41:00 +00:00 |
|
Andrew Eisenberg
|
fbb5d7196f
|
Merge branch 'main' into post-release-prep/codeql-cli-2.7.5
|
2022-01-14 08:23:43 -08:00 |
|
github-actions[bot]
|
1dfcf427aa
|
Release preparation for version 2.7.5
|
2022-01-04 14:44:56 +00:00 |
|
Alex Ford
|
dadaf25262
|
Merge branch 'main' into ruby/rails-cookie-config
|
2022-01-04 12:04:44 +00:00 |
|
Alex Ford
|
7f01be7067
|
Ruby: use new changenote format for rb/weak-cookie-configuration
|
2021-12-22 17:47:44 +00:00 |
|
github-actions[bot]
|
59da2cdf69
|
Release preparation for version 2.7.4
|
2021-12-14 21:35:09 +00:00 |
|
github-actions[bot]
|
337ce65fe5
|
Release preparation for version 2.7.3
|
2021-11-30 20:39:35 +00:00 |
|
Dave Bartolomeo
|
9f6c0991cf
|
Catch up with recent change notes
|
2021-11-29 16:41:18 -05:00 |
|
Dave Bartolomeo
|
5ed9029143
|
Move change notes to correct directories
|
2021-11-29 16:31:11 -05:00 |
|