Rebecca Valentine
|
c1ba1345df
|
Python: ObjAPI to ValAPI: WrongNumArgsInCall: ObjectAPI.qll: Adds doc for getAnInferredType
|
2020-04-06 11:03:42 -07:00 |
|
Rebecca Valentine
|
16eedf9ea5
|
Merge branch 'master' into python-objectapi-to-valueapi-wrongnumberargumentsincall
|
2020-04-06 10:35:49 -07:00 |
|
semmle-qlci
|
e5d3286ee9
|
Merge pull request #3183 from asger-semmle/js/bad-url-scheme-check
Approved by esbena
|
2020-04-06 14:53:15 +01:00 |
|
Calum Grant
|
0d86866ba3
|
Merge pull request #3160 from hvitved/csharp/null-maybe-fp
C#: Add false-positive test for NullMaybe.ql
|
2020-04-06 14:30:31 +01:00 |
|
Calum Grant
|
6cce0de9b2
|
Merge pull request #3124 from hvitved/csharp/dataflow/sources-and-sinks
C#: Introduce `RemoteFlowSink` class
|
2020-04-06 12:36:14 +01:00 |
|
Asger Feldthaus
|
7da0345c6a
|
JS: Autoformat
|
2020-04-06 12:30:04 +01:00 |
|
Asger Feldthaus
|
2c6beadf68
|
JS: Recognize more forms of scheme checks
|
2020-04-06 12:30:03 +01:00 |
|
James Fletcher
|
5034d40e64
|
Merge pull request #3203 from jf205/sd-55
CodeQL support docs: combine table and footnotes into single snippet
|
2020-04-06 09:52:02 +01:00 |
|
james
|
d2b0599b63
|
docs: combine table and footnotes
|
2020-04-06 09:27:30 +01:00 |
|
Robert
|
1096e5d947
|
Merge pull request #3163 from robertbrignull/code_scanning_suites
Add code-scanning suites
|
2020-04-06 08:45:40 +01:00 |
|
Rasmus Wriedt Larsen
|
4ce3d5b748
|
Merge pull request #3040 from BekaValentine/python-objectapi-to-valueapi-iterreturnsnonself
Python: ObjectAPI to ValueAPI: IterReturnsNonSelf
|
2020-04-06 09:37:40 +02:00 |
|
Tom Hvitved
|
c8c706a0ba
|
C#: Un-deprecate PublicCallableParameterFlowSource
|
2020-04-06 09:01:44 +02:00 |
|
Rebecca Valentine
|
01aac8273c
|
Python: ObjAPI to ValAPI: WrongNumArgsInCall: Update queries to use objectapi
|
2020-04-04 03:11:25 -07:00 |
|
Rebecca Valentine
|
8c1aeb24cb
|
Python: ObjAPI to ValAPI: WrongNumArgsInCall: Updates query expected results
|
2020-04-04 00:57:09 -07:00 |
|
Rebecca Valentine
|
88be3359ac
|
Python: ObjAPI to ValAPI: WrongNumForArgsInCall: Update affected queries to use objectapi
|
2020-04-04 00:15:10 -07:00 |
|
Rebecca Valentine
|
26bdb9ab04
|
Python: ObjAPI to ValAPI: WrongNumArgsInCall: Exceptions.qll: Removes extraneous spaces in comments
|
2020-04-03 20:33:17 -07:00 |
|
Rebecca Valentine
|
bbe7314c17
|
Python: ObjAPI to ValAPI: WrongNumArgsInCall: Autoformats ObjectAPI.qll
|
2020-04-03 20:30:24 -07:00 |
|
Rebecca Valentine
|
7615452b31
|
Python: ObjAPI to ValAPI: WrongNumArgsInCall: Autoformat CallArgs.qll
|
2020-04-03 20:28:19 -07:00 |
|
Rebecca Valentine
|
1e76720a92
|
Merge branch 'master' into python-objectapi-to-valueapi-wrongnumberargumentsincall
|
2020-04-03 20:25:53 -07:00 |
|
Rebecca Valentine
|
e0f26d4f7e
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: Updates expected results
|
2020-04-03 20:11:42 -07:00 |
|
Rebecca Valentine
|
f25428b7a9
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: Exceptions.qll: Fixes incorrect implementation of localRaisedType
|
2020-04-03 20:08:00 -07:00 |
|
Rebecca Valentine
|
c6fbbb1cd1
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: CallArgs.qll: Fixes too_*_args refs to getA*Call
|
2020-04-03 20:06:43 -07:00 |
|
Rebecca Valentine
|
2ad0f5af2d
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: ObjectAPI.qll: Adds getAFunctionCall and getAMethodCall predicates to FunctionValue
|
2020-04-03 20:04:32 -07:00 |
|
Rebecca Valentine
|
be86c9c066
|
Python: ObjectAPI to ValueAPI: IterReturnsNonSelf: ObjectAPI.qll: Explains why getAnInferredReturnType is weird for builtins
|
2020-04-03 15:16:16 -07:00 |
|
Rebecca Valentine
|
64b17888e5
|
Python: ObjectAPI to ValueAPI: IterReturnsNonSelf: ObjectAPI.qll: Reorganizes getAnInferredReturnType()
|
2020-04-03 15:14:25 -07:00 |
|
Robert Marsh
|
316d932829
|
Merge pull request #3198 from MathiasVP/valuenumbering-provider-new-file
C++/C#: Prevent accidental import of ValueNumberPropertyProvider
|
2020-04-03 13:31:11 -07:00 |
|
semmle-qlci
|
a8098a2b2d
|
Merge pull request #3197 from erik-krogh/NormalPathSanitizer
Approved by asgerf
|
2020-04-03 16:33:18 +01:00 |
|
Erik Krogh Kristensen
|
9c2053168b
|
writing out the truth table for DotDotSlashPrefixRemovingReplace
|
2020-04-03 15:46:47 +02:00 |
|
semmle-qlci
|
676da02118
|
Merge pull request #3192 from asger-semmle/js/missing-await-not-delete
Approved by esbena
|
2020-04-03 13:21:48 +01:00 |
|
Tom Hvitved
|
4e2d6c0250
|
C#: Add missing QL doc
|
2020-04-03 12:45:56 +02:00 |
|
Mathias Vorreiter Pedersen
|
c54cddead1
|
C++: Include PrintValueNumbering in testcase
|
2020-04-03 12:42:06 +02:00 |
|
Jonas Jensen
|
16c7a35b1c
|
Merge pull request #3195 from geoffw0/taintstring
C++: Model taint flow through std::string constructor and c_str()
|
2020-04-03 12:05:07 +02:00 |
|
Erik Krogh Kristensen
|
94751c1b31
|
dst can be relative for "../" replace call
|
2020-04-03 11:08:31 +02:00 |
|
semmle-qlci
|
dc774e0eac
|
Merge pull request #3166 from erik-krogh/DeadLocal
Approved by asgerf
|
2020-04-03 09:36:20 +01:00 |
|
Tom Hvitved
|
08fbd1d2ad
|
C#: Update change notes
|
2020-04-03 10:25:46 +02:00 |
|
Geoffrey White
|
73bfd819d9
|
C++: Rename classes.
|
2020-04-03 09:23:31 +01:00 |
|
Geoffrey White
|
1bcf187c3e
|
C++: Rename Strings.qll -> StdString.qll.
|
2020-04-03 09:17:33 +01:00 |
|
Mathias Vorreiter Pedersen
|
1e73528102
|
C++/C#: Add synchronization
|
2020-04-03 10:08:00 +02:00 |
|
Mathias Vorreiter Pedersen
|
0b12c1519b
|
C++/C#: Sync identical files
|
2020-04-03 10:06:37 +02:00 |
|
Mathias Vorreiter Pedersen
|
0f70944a5b
|
C++: Move ValueNumberPropertyProvider into its own file to prevent accidental imports
|
2020-04-03 09:55:41 +02:00 |
|
Erik Krogh Kristensen
|
e46cde17a1
|
add a "../" removing taint-step for js/path-injection
|
2020-04-03 09:42:05 +02:00 |
|
Rebecca Valentine
|
2a7b77c0e1
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: Adds new version of FunctionObject.qll
|
2020-04-02 12:18:07 -07:00 |
|
Rebecca Valentine
|
161613f59e
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: Adds new version of Exceptions.qll
|
2020-04-02 12:17:14 -07:00 |
|
Rebecca Valentine
|
6517feda9a
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: Adds new version of ObjectsAPI.qll
|
2020-04-02 11:56:15 -07:00 |
|
Geoffrey White
|
c9ec30fa2a
|
C++: Update use of deprecated methods.
|
2020-04-02 19:49:42 +01:00 |
|
Geoffrey White
|
e9132d833c
|
C++: Autoformat.
|
2020-04-02 19:49:42 +01:00 |
|
Geoffrey White
|
ab716ebe75
|
C++: Change note.
|
2020-04-02 19:49:42 +01:00 |
|
Geoffrey White
|
73171682b7
|
C++: Switch to taint flow as suggested in the old PR.
|
2020-04-02 19:49:41 +01:00 |
|
Geoffrey White
|
b14b52d0ac
|
C++: Add models for std::string (as in old PR).
|
2020-04-02 19:49:41 +01:00 |
|
Geoffrey White
|
69f6790c83
|
C++: Add a test of taint through std::strings, based on the one in the old PR.
|
2020-04-02 19:49:31 +01:00 |
|