Arthur Baars
|
09bc78eafc
|
Ruby: local dataflow step for || and &&
|
2022-10-04 12:58:49 +02:00 |
|
Harry Maclean
|
9f99a3ca1f
|
Ruby: Model sanitize ActionView helper
|
2022-09-26 20:56:11 +13:00 |
|
Harry Maclean
|
1d693d336f
|
Ruby: Model javascript_include_tag and friends
|
2022-09-26 20:56:09 +13:00 |
|
Harry Maclean
|
ed0c85e3af
|
Ruby: Model ActionView helper XSS sinks
|
2022-09-26 20:55:04 +13:00 |
|
erik-krogh
|
063c76b6d1
|
apply suggestions from review
|
2022-09-13 10:52:23 +02:00 |
|
erik-krogh
|
79a048968e
|
make the alert messages of taint-tracking queries more consistent
|
2022-09-07 12:22:50 +02:00 |
|
erik-krogh
|
7e0bd5bde4
|
update expected output of tests
|
2022-08-22 21:41:47 +02:00 |
|
Arthur Baars
|
68aeb2ba85
|
Update test output
|
2022-05-20 16:30:58 +02:00 |
|
Tom Hvitved
|
400802c5ce
|
Ruby: Add flow summaries for Array/Enumerable methods
|
2021-12-22 15:56:20 +01:00 |
|
Tom Hvitved
|
5735bb698d
|
Ruby: Hide desugared nodes in data-flow paths
|
2021-12-08 09:00:16 +01:00 |
|
Harry Maclean
|
356828cd51
|
Update stored XSS fixture
The change to `self` modelling finds more true positives in this query.
|
2021-10-20 13:30:51 +01:00 |
|
Arthur Baars
|
976daddd36
|
Move files to ruby subfolder
|
2021-10-15 11:47:28 +02:00 |
|