Anders Schack-Mulligen
|
d6800394fa
|
Guards: Support disjunctive implications.
|
2025-11-12 14:14:32 +01:00 |
|
Anders Schack-Mulligen
|
2192d75286
|
Java: Add test for a known FP.
|
2025-11-12 14:08:18 +01:00 |
|
Paolo Tranquilli
|
0419667460
|
Merge pull request #20802 from github/redsun82/ripunzip
CI: make `build-ripunzip.yml` auto-create update PR
|
2025-11-11 14:34:39 +01:00 |
|
Michael B. Gale
|
f1076b9eb1
|
Merge pull request #20813 from github/post-release-prep/codeql-cli-2.23.5
Post-release preparation for codeql-cli-2.23.5
|
2025-11-11 13:13:14 +00:00 |
|
Henry Mercer
|
d3dc7908f8
|
Merge branch 'main' into post-release-prep/codeql-cli-2.23.5
|
2025-11-11 12:55:58 +00:00 |
|
github-actions[bot]
|
466a6f330a
|
Post-release preparation for codeql-cli-2.23.5
|
2025-11-11 12:21:57 +00:00 |
|
Paolo Tranquilli
|
e2671da05f
|
Fix build-ripunzip.yml archive step on macos
|
2025-11-11 13:01:39 +01:00 |
|
Paolo Tranquilli
|
104f0e3a02
|
Fix build-ripunzip.yml archive step on windows
|
2025-11-11 12:51:30 +01:00 |
|
Michael B. Gale
|
e5fa4a6dca
|
Merge pull request #20812 from github/release-prep/2.23.5
Release preparation for version 2.23.5
codeql-cli/v2.23.5
|
2025-11-11 11:46:37 +00:00 |
|
Paolo Tranquilli
|
99baf98897
|
Fix build-ripunzip.yml
|
2025-11-11 12:46:28 +01:00 |
|
Michael B. Gale
|
b4fed5bf58
|
Revert C++ range analysis change note
|
2025-11-11 11:38:54 +00:00 |
|
Michael B. Gale
|
ac9a29701e
|
C#: Minor changelog improvements
|
2025-11-11 11:38:20 +00:00 |
|
Napalys Klicius
|
d122534398
|
Merge pull request #20671 from github/napalys/adjust_query_severity
Adjust query severity ratings
|
2025-11-11 12:37:31 +01:00 |
|
github-actions[bot]
|
e4f25c9a13
|
Release preparation for version 2.23.5
|
2025-11-11 11:33:33 +00:00 |
|
Paolo Tranquilli
|
47f2617b4d
|
Use other compression method for ripunzip
|
2025-11-11 12:07:19 +01:00 |
|
Paolo Tranquilli
|
295744eb36
|
Set permissions
|
2025-11-11 12:00:30 +01:00 |
|
Paolo Tranquilli
|
29a2f96cc7
|
Merge branch 'main' into redsun82/ripunzip
|
2025-11-11 11:57:29 +01:00 |
|
Geoffrey White
|
8624f9c660
|
Merge pull request #20749 from github/copilot/add-secure-cookie-test-cases
Add test coverage for actix-web, poem, and http-types cookie secure attribute
|
2025-11-11 09:26:26 +00:00 |
|
Michael B. Gale
|
5b1e651803
|
Merge pull request #20803 from github/revert-20778-release-prep/2.23.4
Revert "Release preparation for version 2.23.4"
|
2025-11-11 00:06:17 +00:00 |
|
Michael B. Gale
|
8ba29a7821
|
Revert "Release preparation for version 2.23.4"
|
2025-11-10 17:13:28 +00:00 |
|
Joe Farebrother
|
eda23902ba
|
Merge pull request #20692 from joefarebrother/csharp-secure-cookie-promote
C#: Promote insecure cookie and httponly cookie queries
|
2025-11-10 15:02:45 +00:00 |
|
Paolo Tranquilli
|
02e696d9cc
|
Update .github/workflows/build-ripunzip.yml
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2025-11-10 15:58:43 +01:00 |
|
Joe Farebrother
|
c9a559a6d8
|
Restrict Append calls to string arguments
|
2025-11-10 14:14:06 +00:00 |
|
Joe Farebrother
|
b813c13462
|
Restrict sinks to fix performance
|
2025-11-10 14:14:01 +00:00 |
|
Joe Farebrother
|
7d5388fb68
|
Update integration tests
|
2025-11-10 14:13:56 +00:00 |
|
Joe Farebrother
|
544446bb81
|
Minor comment update
|
2025-11-10 14:13:51 +00:00 |
|
Joe Farebrother
|
0a085dccbe
|
Fix qhelp
|
2025-11-10 14:13:46 +00:00 |
|
Joe Farebrother
|
d29fc9d2d0
|
Add changenote
|
2025-11-10 14:13:41 +00:00 |
|
Joe Farebrother
|
d8eeae781b
|
Add additional test case for httponly cookies set to true
|
2025-11-10 14:13:36 +00:00 |
|
Paolo Tranquilli
|
a6fda6ba73
|
CI: make build-ripunzip.yml auto-create update PR
|
2025-11-10 15:13:35 +01:00 |
|
Joe Farebrother
|
c734e74c76
|
Update qhelp
|
2025-11-10 14:13:31 +00:00 |
|
Joe Farebrother
|
cdd1edd53b
|
Remove experimental versions
|
2025-11-10 14:13:26 +00:00 |
|
Joe Farebrother
|
6ba7ece2f0
|
Add httponly tests for aspnet core + fixes
|
2025-11-10 14:13:19 +00:00 |
|
Joe Farebrother
|
ae0b997c31
|
Add system.web tests for httponly cookie
|
2025-11-10 14:13:14 +00:00 |
|
Joe Farebrother
|
a9b97f7065
|
Add tests for insecure cookie using system.web
|
2025-11-10 14:13:09 +00:00 |
|
Joe Farebrother
|
bb010fee6b
|
Add tests for secure cookie using aspnetcore
|
2025-11-10 14:13:04 +00:00 |
|
Joe Farebrother
|
3cdfa8e0ac
|
Update comments and names
|
2025-11-10 14:12:57 +00:00 |
|
Joe Farebrother
|
a87a03cfa8
|
Move to main query pack
|
2025-11-10 14:12:48 +00:00 |
|
Joe Farebrother
|
71ad5a340f
|
Refactor httponly cookie query
|
2025-11-10 14:12:43 +00:00 |
|
Joe Farebrother
|
a1864edcb6
|
Presere behaviour for insecure cookie constructor
|
2025-11-10 14:12:36 +00:00 |
|
Joe Farebrother
|
d3ea6758c3
|
Simplify checks for assignments to false to creation case
|
2025-11-10 14:12:30 +00:00 |
|
Joe Farebrother
|
7bb65fef1b
|
Refactor secure cookie query
|
2025-11-10 14:12:24 +00:00 |
|
Mathias Vorreiter Pedersen
|
fd8bf990f6
|
Merge pull request #20783 from MathiasVP/fix-cp-in-external-flow
C++: Fix cartesian-like join in `ExternalFlow.qll`
|
2025-11-10 13:40:34 +00:00 |
|
Mathias Vorreiter Pedersen
|
7b052e2404
|
Merge branch 'main' into fix-cp-in-external-flow
|
2025-11-10 10:44:31 +00:00 |
|
Mathias Vorreiter Pedersen
|
29a294f8d0
|
C++: Bind the columns inside the predicate instead of relying on 'bindingset's. The repeated inlining caused by 'bindiingset's created some #shared predicates with repeated regex matching.
|
2025-11-10 10:21:12 +00:00 |
|
Mathias Vorreiter Pedersen
|
267a7f5229
|
Merge pull request #20779 from MathiasVP/fix-bad-magic
C++: Fix bad magic in `IRGuards`
|
2025-11-10 10:05:18 +00:00 |
|
Jeroen Ketema
|
eb3e86480f
|
Merge pull request #20784 from jketema/qual-fail
C++: Fix named qualifier dataset check error with decltypes
|
2025-11-10 10:36:47 +01:00 |
|
Paolo Tranquilli
|
3de598ef79
|
Merge pull request #20800 from github/redsun82/remove-macos-13
CI: update images in `build-ripunzip.yml`
|
2025-11-10 10:16:14 +01:00 |
|
Jeroen Ketema
|
0bf415acdf
|
C++: Add upgrade and downgrade scripts
|
2025-11-10 10:11:05 +01:00 |
|
Jeroen Ketema
|
b660625429
|
C++: Update dbscheme to address dataset check error
|
2025-11-10 10:11:04 +01:00 |
|