Erik Krogh Kristensen
|
e434f075fa
|
introduce, and use, API::APICallNode
|
2022-02-03 23:10:39 +01:00 |
|
Erik Krogh Kristensen
|
3801a158a8
|
remove module exporst nodes from API graphs
|
2022-02-03 23:10:39 +01:00 |
|
Erik Krogh Kristensen
|
c3f4a851f0
|
remove some TODOs I won't do
|
2022-02-03 23:10:39 +01:00 |
|
Erik Krogh Kristensen
|
3be3da2eb6
|
add recursive API-graph test
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
ef5818e243
|
support import * in ApiGraphs
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
16774ba285
|
add support for named parameters in API graphs
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
095c73f1fe
|
redo the ApiGraph testing framework
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
66fd43fc3b
|
add def edge for function returns
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
d8eea7ba4c
|
property writes are def nodes
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
a908b219e9
|
more backtracking of def nodes, and lots of tests
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
038b032a43
|
get basic module exports to work in API-graphs
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
df9efbe778
|
get mimimal def nodes to work in python
|
2022-02-03 23:10:38 +01:00 |
|
Erik Krogh Kristensen
|
52ca0d168b
|
move API-graph tests out of the experimental test folder
|
2022-02-03 23:10:37 +01:00 |
|
Erik Krogh Kristensen
|
89786d9ce2
|
rename pr to ref in memberFromRef
|
2022-02-03 23:10:37 +01:00 |
|
Harry Maclean
|
ab7fd89653
|
Merge pull request #7663 from github/hmac/api-graph-subclass
Ruby: Add basic subclassing support to API Graphs
|
2022-02-04 10:19:07 +13:00 |
|
Harry Maclean
|
e328c6222a
|
Merge pull request #7797 from github/hmac/pin-rust
Ruby: Pin Rust to 1.54
|
2022-02-04 10:18:46 +13:00 |
|
Robert Marsh
|
8544cff1c4
|
Merge pull request #7836 from geoffw0/clrtxt9
C++: Fix more FPs in cpp/cleartext-transmission
|
2022-02-03 15:18:55 -05:00 |
|
Chuan-kai Lin
|
c8bc5cfa75
|
Merge pull request #7825 from github/cklin/python-downgrade-scripts
Python: adjust downgrade script location and format
|
2022-02-03 11:40:07 -08:00 |
|
Harry Maclean
|
912842623d
|
Simplify cache key
|
2022-02-04 07:41:29 +13:00 |
|
Geoffrey White
|
8031c3f699
|
Merge branch 'main' into clrtxt9
|
2022-02-03 17:01:59 +00:00 |
|
Geoffrey White
|
02b1774d7f
|
C++: Switch from GVN to localFlow.
|
2022-02-03 16:00:26 +00:00 |
|
Tom Hvitved
|
ef227a4721
|
Merge pull request #7784 from hvitved/csharp/dotnet6
C#: Use .NET 6
|
2022-02-03 16:42:26 +01:00 |
|
Geoffrey White
|
3cfd1b5052
|
C++: More test cases.
|
2022-02-03 15:11:59 +00:00 |
|
Geoffrey White
|
3b844f701e
|
C++:Change note.
|
2022-02-03 13:58:38 +00:00 |
|
Erik Krogh Kristensen
|
e93c46ad31
|
Merge pull request #7811 from erik-krogh/pyApiIpa
Python: refactor API-graph labels to an IPA type
|
2022-02-03 12:31:39 +01:00 |
|
Erik Krogh Kristensen
|
5284bbb6b3
|
Merge pull request #7821 from erik-krogh/upload-sarif
QL: upload sarif as part of the QL-for-QL workflow
|
2022-02-03 12:05:51 +01:00 |
|
Henry Mercer
|
224d7a7ce0
|
Merge pull request #7801 from github/henrymercer/js-atm-migrate-tests
JS: Migrate CodeQL tests for ML-powered queries
|
2022-02-03 10:17:19 +00:00 |
|
Tony Torralba
|
3c9b332ce0
|
Merge pull request #7826 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2022-02-03 09:38:53 +01:00 |
|
Tom Hvitved
|
6bb71f051b
|
Merge pull request #7791 from hvitved/dataflow/inline-local-flow-star
Data flow: Inline `local(Expr|Instruction)?(Flow|Taint)`
|
2022-02-03 09:02:43 +01:00 |
|
github-actions[bot]
|
2a9f98cce0
|
Add changed framework coverage reports
|
2022-02-03 00:10:33 +00:00 |
|
Harry Maclean
|
704b58519f
|
Ruby: Include subclasses in more API calls
Change the behaviour of `API::getInstance()` and `API::getReturn()` to
include results on subclasses of the current API node.
|
2022-02-03 11:35:59 +13:00 |
|
Chuan-kai Lin
|
df91ee6616
|
Python: adjust downgrade script location and format
|
2022-02-02 14:23:21 -08:00 |
|
Erik Krogh Kristensen
|
7ef051456a
|
upload sarif as part of the QL-for-QL workflow
|
2022-02-02 20:32:22 +01:00 |
|
Tom Hvitved
|
7b5699d058
|
C#: Update CIL attributes test
|
2022-02-02 19:25:30 +01:00 |
|
Tom Hvitved
|
2fe65128a0
|
C#: Update CIL type annotations test
|
2022-02-02 19:25:30 +01:00 |
|
Tom Hvitved
|
c4ad237a5c
|
C#: Update expected test output
|
2022-02-02 19:25:30 +01:00 |
|
Tom Hvitved
|
516bd9f77f
|
C#: Fix deprecation warnings
|
2022-02-02 19:25:30 +01:00 |
|
Tom Hvitved
|
09c5212ccc
|
C#: Account for explicit interface implementations in OperatorSymbol
|
2022-02-02 19:25:30 +01:00 |
|
Tom Hvitved
|
d7eeb1fec8
|
C#: Use .NET 6
|
2022-02-02 19:25:30 +01:00 |
|
Henry Mercer
|
2c17437092
|
JS: Run ML-powered queries tests on all PRs modifying relevant files
|
2022-02-02 18:11:25 +00:00 |
|
Henry Mercer
|
a586be956e
|
JS: Remove versions from packs we don't intend to publish
|
2022-02-02 18:10:57 +00:00 |
|
Geoffrey White
|
708da8cd62
|
C++: Increase the query precision to 'high'.
|
2022-02-02 18:03:25 +00:00 |
|
Geoffrey White
|
4048ba0a1c
|
C++: Fix false positives around terminal output.
|
2022-02-02 17:59:28 +00:00 |
|
Geoffrey White
|
39a2ffd438
|
C++: Fix false positives around 'stdin'.
|
2022-02-02 17:39:14 +00:00 |
|
Arthur Baars
|
6acf49d4da
|
Merge pull request #7814 from aibaars/fix-ql-alerts
Ruby: fix all QL-QL alerts
|
2022-02-02 18:25:38 +01:00 |
|
Geoffrey White
|
cc20969bdd
|
C++: Add test cases based on some remaining real world FPs.
|
2022-02-02 16:15:59 +00:00 |
|
Tony Torralba
|
4f13bf8941
|
Merge pull request #6492 from atorralba/atorralba/android-cleartext-storage-database
Java: Create new query Cleartext storage of sensitive information in Android databases
|
2022-02-02 16:23:05 +01:00 |
|
Tony Torralba
|
54e8ea56e8
|
Apply suggestions from code review
Co-authored-by: Anders Schack-Mulligen <aschackmull@users.noreply.github.com>
|
2022-02-02 15:44:26 +01:00 |
|
Mathias Vorreiter Pedersen
|
1aa32b09be
|
Merge pull request #7802 from geoffw0/clrtxt8
C++: Recognize password struct fields.
|
2022-02-02 14:10:40 +00:00 |
|
Henry Mercer
|
7018f6ad40
|
JS: Add missing @id for endpoint types query
|
2022-02-02 13:15:15 +00:00 |
|