Asger Feldthaus
|
d0e94e655d
|
JS: Exclude error handling from auth calls
|
2021-12-07 10:46:17 +01:00 |
|
Asger Feldthaus
|
400bf10cc3
|
JS: Move fastify-specific route handler step into extension point
|
2021-12-07 10:46:17 +01:00 |
|
Asger Feldthaus
|
71820569e1
|
JS: Instantiate for Fastify
|
2021-12-07 10:46:15 +01:00 |
|
Asger Feldthaus
|
cfb9265f0a
|
JS: Add template steps for res.locals.x
|
2021-12-07 10:44:53 +01:00 |
|
Asger Feldthaus
|
5269933461
|
JS: Port missing rate limiting query
|
2021-12-07 10:44:19 +01:00 |
|
Asger Feldthaus
|
389a3c9073
|
JS: Port CSRF query
|
2021-12-07 10:43:06 +01:00 |
|
Asger Feldthaus
|
16fa066636
|
JS: Fix false negative in Mongo model
|
2021-12-07 10:43:05 +01:00 |
|
Asger Feldthaus
|
3dd5d4d7b4
|
JS: Instantiate for Express and add tests
|
2021-12-07 10:43:03 +01:00 |
|
Asger Feldthaus
|
aae4260819
|
JS: Routing model
|
2021-12-07 10:41:55 +01:00 |
|
Asger Feldthaus
|
e9575c3df6
|
JS: Support AdditionalUseStep in API graphs
|
2021-12-07 10:41:52 +01:00 |
|
Geoffrey White
|
4e68a4670b
|
Merge pull request #7322 from MathiasVP/fix-performance-of-unused-static-functions
C++: Fix performance of 'cpp/unused-static-function'.
|
2021-12-06 17:30:51 +00:00 |
|
Mathias Vorreiter Pedersen
|
4765772725
|
C++: Fix performance of 'cpp/unused-static-function'.
|
2021-12-06 16:41:10 +00:00 |
|
Mathias Vorreiter Pedersen
|
6b1ac73a46
|
Merge pull request #7177 from ihsinme/ihsinme-patch-6141
fix request for cpp exceptions
|
2021-12-06 09:24:59 +00:00 |
|
Anders Schack-Mulligen
|
de1269f18f
|
Merge pull request #7308 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2021-12-06 09:58:49 +01:00 |
|
github-actions[bot]
|
c46ede02e6
|
Add changed framework coverage reports
|
2021-12-06 00:09:47 +00:00 |
|
Alex Ford
|
6adfea2365
|
Merge pull request #7163 from github/ruby/file-reader-extend
Ruby: Extend `FileSystemReadAccess` to include more potential sources of input from the filesystem
|
2021-12-05 23:32:43 +00:00 |
|
Arthur Baars
|
9f48ae656f
|
Merge pull request #7306 from aibaars/ruby-parenthesized-pattern
Ruby: parenthesized patterns
|
2021-12-03 19:18:09 +01:00 |
|
Arthur Baars
|
0805daaa56
|
Update ruby/ql/lib/codeql/ruby/ast/Pattern.qll
Add missing backticks
|
2021-12-03 18:44:21 +01:00 |
|
Arthur Baars
|
51998294ad
|
Ruby: add AST classes for parenthesized patterns
|
2021-12-03 18:13:53 +01:00 |
|
Tony Torralba
|
4ae99592a3
|
Merge pull request #6801 from atorralba/atorralba/android_slice_models
Android: Add `androidx.slice.builders` models
|
2021-12-03 17:44:09 +01:00 |
|
Arthur Baars
|
205233b42f
|
Add trivial upgrade
|
2021-12-03 17:04:00 +01:00 |
|
Arthur Baars
|
3e1ebb954f
|
Ruby: update generated dbscheme and library
|
2021-12-03 17:02:08 +01:00 |
|
Arthur Baars
|
0cec59e043
|
Ruby: update tree-sitter grammar
|
2021-12-03 17:01:12 +01:00 |
|
Tony Torralba
|
8ffa195538
|
Merge branch 'main' into atorralba/android_slice_models
|
2021-12-03 16:59:33 +01:00 |
|
Nick Rolfe
|
5a2ef8321c
|
Merge pull request #7120 from github/nickrolfe/regexp_g_anchor
Ruby/Python: parse anchors in regexes as special characters
|
2021-12-03 15:24:38 +00:00 |
|
Michael Nebel
|
4128f56aa9
|
Merge pull request #7289 from michaelnebel/csharp-mad-as-csv
C#: Convert some of the existing flow summaries to CSV
|
2021-12-03 15:09:36 +01:00 |
|
Arthur Baars
|
802faf1197
|
Merge pull request #7296 from intrigus-lgtm/patch-7
Fix QL Doc typo.
|
2021-12-03 11:54:22 +01:00 |
|
Michael Nebel
|
7ad52e1365
|
C#: Address review comments from hvitved.
|
2021-12-03 11:12:31 +01:00 |
|
Michael Nebel
|
f00b62df76
|
C#: Convert System.Uri flow to CSV format.
|
2021-12-03 11:10:24 +01:00 |
|
Michael Nebel
|
90baef83ee
|
C#: Add flow summaries for another TryParse method in System.Boolean.
|
2021-12-03 11:10:24 +01:00 |
|
Michael Nebel
|
8eb041c172
|
C#: Convert System.Boolean flow to CSV format.
|
2021-12-03 11:10:24 +01:00 |
|
Tom Hvitved
|
520f598d49
|
Merge pull request #7301 from hvitved/ruby/cfg-disjunct-test
Ruby: Add CFG test for `||`
|
2021-12-03 09:57:40 +01:00 |
|
Tom Hvitved
|
50dd4e7ee7
|
Ruby: Add CFG test for ||
|
2021-12-03 09:16:11 +01:00 |
|
Arthur Baars
|
f2800abee4
|
Merge pull request #7299 from github/nickrolfe/clippy_fixes
Ruby: extractor: fix warnings from Clippy
|
2021-12-02 18:52:22 +01:00 |
|
Nick Rolfe
|
991d659cb2
|
Ruby: use unwrap_or_else to construct object only when needed
|
2021-12-02 16:30:45 +00:00 |
|
Nick Rolfe
|
976faf97d1
|
Ruby: remove redundant closure
|
2021-12-02 16:29:59 +00:00 |
|
Michael Nebel
|
19c34be1ea
|
Merge pull request #7297 from michaelnebel/csharp-accessor-flow
C#: Make it possible to define flow for property backing methods.
|
2021-12-02 16:24:19 +01:00 |
|
Michael Nebel
|
102b5e05e1
|
Merge pull request #7290 from michaelnebel/csharp-modify-flow-summaries-test
C#: Modify printing of flow summaries in test.
|
2021-12-02 16:22:47 +01:00 |
|
Geoffrey White
|
2b349b3024
|
Merge pull request #7295 from geoffw0/cwe260
C++: Add CWE tags to some queries.
|
2021-12-02 14:41:34 +00:00 |
|
intrigus
|
2c4ccb79a1
|
Fix QL Doc typos.
|
2021-12-02 15:30:29 +01:00 |
|
Geoffrey White
|
3043ac850c
|
C++: Update security-severity tags.
|
2021-12-02 14:04:49 +00:00 |
|
Michael Nebel
|
f6c36b469a
|
C#: Include test case for override of property.
|
2021-12-02 15:04:01 +01:00 |
|
Michael Nebel
|
f190d60912
|
C#: Make it possible to describe flow for properties using their backing methods.
|
2021-12-02 15:02:22 +01:00 |
|
Geoffrey White
|
eccba57536
|
C++: Add CWE-327 tag to cpp/boost/use-of-deprecated-hardcoded-security-protocol.
|
2021-12-02 12:32:14 +00:00 |
|
Geoffrey White
|
7aa6c62050
|
C++: Add CWE-326 tag to cpp/boost/tls-settings-misconfiguration.
|
2021-12-02 12:29:42 +00:00 |
|
Nick Rolfe
|
05415768c9
|
Merge remote-tracking branch 'origin/main' into nickrolfe/regexp_g_anchor
|
2021-12-02 12:07:13 +00:00 |
|
yoff
|
f10f053c36
|
Merge pull request #7228 from RasmusWL/fastapi-improvements
Python: FastAPI improvements
|
2021-12-02 12:58:53 +01:00 |
|
Geoffrey White
|
913d8361ba
|
C++: Add CWE-260 tag to cpp/cleartext-storage-file.
|
2021-12-02 11:54:51 +00:00 |
|
yoff
|
4609b2060a
|
Merge pull request #7217 from RasmusWL/more-path-injection-fps
Python: Add `x in <var>` test for StringConstCompare
|
2021-12-02 12:35:33 +01:00 |
|
Michael Nebel
|
8f3be9fbfd
|
C#: Update flow summaries test according to new printing format.
|
2021-12-02 11:28:06 +01:00 |
|