Asger Feldthaus
|
c189df2341
|
Revert "JS: Add support for " of " syntax to help during transition"
This reverts commit 9bf522b3048c3b11f7e6d734ed797a613614a095.
|
2022-02-21 08:21:51 +01:00 |
|
Asger Feldthaus
|
53935db6c6
|
JS: Add support for " of " syntax to help during transition
|
2022-02-21 08:16:54 +01:00 |
|
Asger Feldthaus
|
30254686d8
|
JS: Move ".."-parsing trick into AccessPathSyntax.qll
|
2022-02-21 08:16:54 +01:00 |
|
Esben Sparre Andreasen
|
f08a140505
|
update tests for password patterns
|
2022-02-16 13:22:19 +01:00 |
|
Asger Feldthaus
|
8b55a24e7c
|
JS: Add url-parse.qs as an alias for the querystringify library
|
2022-02-14 15:29:50 +01:00 |
|
Erik Krogh Kristensen
|
36e02ae9ac
|
Merge pull request #7912 from erik-krogh/moarApi
JS: convert more type-trackers to API-graphs
|
2022-02-11 10:32:45 +01:00 |
|
CodeQL CI
|
9ebbd9efa1
|
Merge pull request #7591 from asgerf/js/mysql-sinks
Approved by esbena
|
2022-02-10 12:50:36 +00:00 |
|
Erik Krogh Kristensen
|
12d31d750a
|
convert more type-trackers to API-graphs
|
2022-02-10 09:54:52 +01:00 |
|
Erik Krogh Kristensen
|
896d2bad0e
|
update expected output now that JSON.stringify() is seen as a sanitizer
|
2022-02-07 13:34:18 +01:00 |
|
Erik Krogh Kristensen
|
b8f1fb3954
|
JS: fix ql/field-only-used-in-charpred within JavaScript
|
2022-01-20 09:41:13 +01:00 |
|
Asger Feldthaus
|
79f799066a
|
JS: Update test output
|
2022-01-17 16:27:57 +01:00 |
|
Stephan Brandauer
|
09a28c428c
|
base implementation of Spanner model on models-as-data
|
2022-01-12 17:07:16 +01:00 |
|
Stephan Brandauer
|
132e0bf4b7
|
add database accesses as additional (heuristic) remote flow sources
|
2022-01-11 11:38:41 +01:00 |
|
Asger Feldthaus
|
d33200ea83
|
JS: Add test for WithArity
|
2022-01-05 14:35:02 +01:00 |
|
Asger Feldthaus
|
772681d249
|
JS: Initial support for models as data
|
2022-01-05 14:34:52 +01:00 |
|
CodeQL CI
|
de4b655ddb
|
Merge pull request #7327 from asgerf/js/handlebars-more-raw-interpolation
Approved by erik-krogh
|
2021-12-17 14:07:57 +00:00 |
|
CodeQL CI
|
39ec7132af
|
Merge pull request #7049 from asgerf/js/routing-trees
Approved by erik-krogh
|
2021-12-17 12:26:38 +00:00 |
|
Asger Feldthaus
|
e2c6dd7d56
|
JS: Recognize {{& ... }} as an XSS sink
|
2021-12-17 10:31:50 +01:00 |
|
Asger Feldthaus
|
61cc84ba69
|
JS: Recognize leading/trailing ~ and & in mustache-tags
|
2021-12-17 10:31:50 +01:00 |
|
CodeQL CI
|
f274f06d9b
|
Merge pull request #7409 from asgerf/js/track-functions-with-methods
Approved by erik-krogh
|
2021-12-16 09:01:42 +00:00 |
|
Asger Feldthaus
|
53b3581ed0
|
JS: Add test to stress flow through properties
|
2021-12-15 17:16:56 +01:00 |
|
Asger Feldthaus
|
995e33158f
|
JS: Add test for res.locals flow to template
|
2021-12-15 16:00:19 +01:00 |
|
Asger Feldthaus
|
04bdba85ea
|
JS: Shift line numbers in test expectations
|
2021-12-15 16:00:19 +01:00 |
|
Erik Krogh Kristensen
|
de4458346f
|
Merge pull request #7344 from SZFsir/main
JS: Improve inter-procedural type inference for FunctionExpr
|
2021-12-13 21:58:53 +01:00 |
|
Asger Feldthaus
|
b336c29283
|
JS: Track functions with methods
|
2021-12-10 09:38:29 +01:00 |
|
Asger Feldthaus
|
4ef2a5f4f1
|
JS: Add test
|
2021-12-10 09:38:29 +01:00 |
|
JrXnm
|
1a1a7413c2
|
JS: Improv inter-procedural type inference for FunctionExpr
|
2021-12-10 01:09:49 +08:00 |
|
Asger Feldthaus
|
3dd5d4d7b4
|
JS: Instantiate for Express and add tests
|
2021-12-07 10:43:03 +01:00 |
|
Erik Krogh Kristensen
|
fdcc144a98
|
add test for import assertions
|
2021-11-29 13:51:28 +01:00 |
|
Erik Krogh Kristensen
|
591aeff906
|
add TypeScript test for new private field syntax
|
2021-11-29 13:51:28 +01:00 |
|
Erik Krogh Kristensen
|
19bbe6d276
|
add JavaScript support for new private fields syntax
|
2021-11-29 13:51:25 +01:00 |
|
Erik Krogh Kristensen
|
d946802057
|
add support for type-only import specifiers
|
2021-11-29 13:49:10 +01:00 |
|
Erik Krogh Kristensen
|
57399b733e
|
add test for String types as Discriminants
|
2021-11-29 13:49:10 +01:00 |
|
Erik Krogh Kristensen
|
0e890fd788
|
add test for the Awaited type
|
2021-11-29 13:49:10 +01:00 |
|
Erik Krogh Kristensen
|
eef3905c46
|
update expected output. The TypeScript compiler now emits types in more cases
|
2021-11-29 13:49:10 +01:00 |
|
Erik Krogh Kristensen
|
08ce03cd93
|
Merge branch 'main' into explicit-this
|
2021-11-24 15:24:58 +01:00 |
|
Erik Krogh Kristensen
|
011fc20963
|
use matches instead of regexpMatch
|
2021-11-18 15:41:25 +01:00 |
|
Erik Krogh Kristensen
|
0ff36cd083
|
Merge branch 'main' into explicit-this
|
2021-11-13 21:01:25 +01:00 |
|
Erik Krogh Kristensen
|
db40ccae81
|
add explicit this to all member calls
|
2021-11-01 09:51:15 +01:00 |
|
Erik Krogh Kristensen
|
15c90adec5
|
remove redundant cast where the type is enforced by an equality comparison
|
2021-10-28 18:08:20 +02:00 |
|
Erik Krogh Kristensen
|
e75448ebb0
|
remove redundant inline casts
|
2021-10-28 16:35:53 +02:00 |
|
Erik Krogh Kristensen
|
a3c55c2aec
|
use set literal instead of big disjunction of literals
|
2021-10-26 12:55:25 +02:00 |
|
Asger Feldthaus
|
c8e7df7900
|
JS: Add test case
|
2021-10-01 12:02:40 +02:00 |
|
Erik Krogh Kristensen
|
fdbf5f73b1
|
add JS support for static initializers
|
2021-09-14 20:40:46 +02:00 |
|
Erik Krogh Kristensen
|
e3ed6c2523
|
refactor StaticInitializer into it's own class
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
ffd51e725f
|
add getter for static initializer blocks
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
9585481d0b
|
add support for static initializer blocks in TypeScript
|
2021-09-14 20:40:45 +02:00 |
|
Erik Krogh Kristensen
|
59f15eb4eb
|
add tests for TypeScript 4.4 types
|
2021-09-14 20:40:45 +02:00 |
|
Chris Smowton
|
487ebdf173
|
Add test for Javascript literal with an unpaired surrogate character
|
2021-09-13 14:02:05 +01:00 |
|
Asger Feldthaus
|
db1de18cc2
|
JS: Support transitive callback-passing
|
2021-09-08 13:08:16 +02:00 |
|