github-actions[bot]
|
cdb8f67601
|
Post-release preparation for codeql-cli-2.12.0
|
2023-01-06 10:36:34 +00:00 |
|
Nick Rolfe
|
6e07076151
|
tweak wording in 2.12 release notes
|
2023-01-05 16:46:44 +00:00 |
|
github-actions[bot]
|
b6a8193785
|
Release preparation for version 2.12.0
|
2023-01-05 16:32:14 +00:00 |
|
Aditya Sharad
|
9988c19a42
|
Merge branch 'main' into tutorial/library-pack
|
2023-01-03 14:08:37 -08:00 |
|
Edward Minnix III
|
b77923f6e6
|
Merge pull request #11767 from atorralba/atorralba/java/fix-pinning-tests
Java: Small simplification in Missing Certificate Pinning tests
|
2022-12-21 11:21:47 -05:00 |
|
Edward Minnix III
|
597523e65a
|
Merge pull request #11766 from atorralba/atorralba/java/fix-android-query-id
Java: Fix new Android queries' IDs
|
2022-12-21 11:21:12 -05:00 |
|
Arthur Baars
|
98c5b81456
|
Merge pull request #11723 from aibaars/alert-suppression
CodeQL alert suppression
|
2022-12-21 10:59:57 +01:00 |
|
Arthur Baars
|
035ad65e43
|
AlertSuppression: move library into util folder
|
2022-12-21 10:39:57 +01:00 |
|
Tony Torralba
|
ab73d13d8b
|
Small simplification
|
2022-12-21 09:58:13 +01:00 |
|
Tony Torralba
|
345c383acc
|
Fix new Android queries' IDs
|
2022-12-21 09:36:57 +01:00 |
|
github-actions[bot]
|
eb98bb2842
|
Add changed framework coverage reports
|
2022-12-21 00:15:01 +00:00 |
|
Jami
|
c9258effb6
|
Merge pull request #11572 from jcogs33/jcogs33/model-top-jdk-apis
Java: model top 100 JDK APIs
|
2022-12-20 09:13:53 -05:00 |
|
Jami
|
dc0bad3dc5
|
update change note
Co-authored-by: yo-h <55373593+yo-h@users.noreply.github.com>
|
2022-12-20 07:55:58 -05:00 |
|
Tony Torralba
|
149cae9603
|
Merge pull request #10971 from joefarebrother/android-certificate-pinning
Java: Add Android missing certificate pinning query (CWE-295)
|
2022-12-20 11:03:16 +01:00 |
|
Tony Torralba
|
3e7a819fe7
|
Simplification
|
2022-12-20 09:42:25 +01:00 |
|
Jeroen Ketema
|
edc768b43b
|
Merge pull request #11707 from smowton/smowton/fix/java-empty-multiline-comment
Java: handle printing an empty comment (/**/); add relevant tests
|
2022-12-20 08:07:42 +01:00 |
|
Aditya Sharad
|
ed29b3e4d6
|
Shared packs: Depend on codeql/tutorial from all language libraries
This allows `import tutorial` from queries targeting
any language, just like before, while removing the
duplicate copies of `tutorial.qll`.
|
2022-12-19 15:52:11 -08:00 |
|
Jami Cogswell
|
19deb59d07
|
Java: sort neutral models alphabetically
|
2022-12-19 14:22:17 -05:00 |
|
Tony Torralba
|
a47ef17a0d
|
Update java/ql/src/Security/CWE/CWE-295/AndroidMissingCertificatePinning1.java
Co-authored-by: Edward Minnix III <egregius313@github.com>
|
2022-12-19 18:11:54 +01:00 |
|
Chris Smowton
|
ebc0b0c4d6
|
Merge pull request #11665 from smowton/smowton/admin/revert-kotlin-default-method-type-erasure
Kotlin: Revert type erasure within $default functions
|
2022-12-19 16:33:20 +00:00 |
|
Edward Minnix III
|
39a7c7bb12
|
Merge pull request #11282 from egregius313/egregiu313/webview-addjavascriptinterface
Java: Query for detecting addJavascriptInterface method calls
|
2022-12-19 11:28:45 -05:00 |
|
Tony Torralba
|
624c9ff834
|
Update java/ql/src/Security/CWE/CWE-295/AndroidMissingCertificatePinning1.java
|
2022-12-19 17:26:41 +01:00 |
|
Arthur Baars
|
a8be5d7274
|
AlertSuppression: add change notes
|
2022-12-19 17:02:52 +01:00 |
|
Arthur Baars
|
0f313231bc
|
AlertSuppression: add more tests
|
2022-12-19 16:43:11 +01:00 |
|
Tony Torralba
|
0c6ace350f
|
Update java/ql/src/Security/CWE/CWE-295/AndroidMissingCertificatePinning.ql
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
|
2022-12-19 16:24:39 +01:00 |
|
Arthur Baars
|
c9739b21cb
|
AlertSuppression: add support for //codeql comments
|
2022-12-19 16:10:28 +01:00 |
|
Arthur Baars
|
c176606be5
|
AlertSuppression: allow //lgtm comments to scope over the next line
|
2022-12-19 16:10:26 +01:00 |
|
Arthur Baars
|
016c7a8ca7
|
Merge pull request #11719 from aibaars/alert-suppression-shared
Shared AlertSuppression library
|
2022-12-19 16:04:44 +01:00 |
|
Jami Cogswell
|
a8ee633acd
|
Java: apply review suggestions
|
2022-12-19 09:09:01 -05:00 |
|
Jami Cogswell
|
f37f0a09aa
|
Java: update change note
|
2022-12-19 08:41:56 -05:00 |
|
Jami Cogswell
|
42ddd66360
|
Java: add hasApiName predicate
|
2022-12-19 08:38:12 -05:00 |
|
Chris Smowton
|
2ca56e0c1e
|
Java: handle printing an empty comment (/**/); add relevant tests
|
2022-12-19 14:12:09 +01:00 |
|
Tony Torralba
|
484a16ce1b
|
Update java/ql/src/Security/CWE/CWE-295/AndroidMissingCertificatePinning.ql
|
2022-12-19 12:10:32 +01:00 |
|
Arthur Baars
|
bc646d407e
|
Java: use shared AlertSuppression.qll
|
2022-12-19 12:07:28 +01:00 |
|
Tony Torralba
|
a880fecc8b
|
Apply suggestions from code review
Co-authored-by: mc <42146119+mchammer01@users.noreply.github.com>
|
2022-12-19 11:56:36 +01:00 |
|
Jami Cogswell
|
f933fc75cd
|
Java: update another test affected by Integer.parseInt, and one affected by String.length
|
2022-12-18 21:46:43 -05:00 |
|
Jami Cogswell
|
f3fc68352e
|
Java: update tests affected by Integer.parseInt model
|
2022-12-18 19:43:32 -05:00 |
|
erik-krogh
|
ba7321ac5c
|
add qldoc to RegExpCharEscape
|
2022-12-18 17:23:45 +01:00 |
|
erik-krogh
|
26c5480ee6
|
share {js,rb}/regex/missing-regexp-anchor
|
2022-12-18 17:23:41 +01:00 |
|
erik-krogh
|
f67d0bc8c0
|
put the shared HostnameRegexp code in the shared regex pack
|
2022-12-17 17:26:18 +01:00 |
|
Jami Cogswell
|
1d916a2baa
|
Java: clean up
|
2022-12-16 16:16:56 -05:00 |
|
Jami Cogswell
|
0c22d68a65
|
Java: update extensible predicate names
|
2022-12-16 15:40:14 -05:00 |
|
Jami
|
ff652f7dee
|
Merge branch 'main' into jcogs33/model-top-jdk-apis
|
2022-12-16 15:32:50 -05:00 |
|
Jami Cogswell
|
9762423fbc
|
Java: add more test cases
|
2022-12-16 15:26:54 -05:00 |
|
Henry Mercer
|
30451ee950
|
Merge pull request #11681 from github/henrymercer/mergeback-3.8
Merge `rc/3.8` back to `main`
|
2022-12-16 17:43:12 +00:00 |
|
Jami Cogswell
|
83630842b6
|
Java: add change note
|
2022-12-16 11:49:52 -05:00 |
|
Jami Cogswell
|
c0628035fa
|
Java: reduce code duplication
|
2022-12-16 10:28:34 -05:00 |
|
Jami Cogswell
|
640b450c47
|
Java: add message column to qltest
|
2022-12-16 08:51:18 -05:00 |
|
Jami Cogswell
|
bf6148c477
|
Java: fix bot alert, remove metadata from qltest
|
2022-12-16 08:44:23 -05:00 |
|
Michael Nebel
|
b2856c1f5a
|
Merge pull request #11705 from michaelnebel/dataextensiontests
C#/Java: Migrate tests to use implicitly loaded extensions.
|
2022-12-16 10:50:07 +01:00 |
|