Michael B. Gale
|
e65f8eacbc
|
Merge pull request #20609 from github/dependabot/go_modules/go/extractor/extractor-dependencies-5148baeadc
Bump the extractor-dependencies group in /go/extractor with 2 updates
|
2025-10-13 10:33:14 +01:00 |
|
dependabot[bot]
|
500421d891
|
Bump the extractor-dependencies group in /go/extractor with 2 updates
Bumps the extractor-dependencies group in /go/extractor with 2 updates: [golang.org/x/mod](https://github.com/golang/mod) and [golang.org/x/tools](https://github.com/golang/tools).
Updates `golang.org/x/mod` from 0.28.0 to 0.29.0
- [Commits](https://github.com/golang/mod/compare/v0.28.0...v0.29.0)
Updates `golang.org/x/tools` from 0.37.0 to 0.38.0
- [Release notes](https://github.com/golang/tools/releases)
- [Commits](https://github.com/golang/tools/compare/v0.37.0...v0.38.0)
---
updated-dependencies:
- dependency-name: golang.org/x/mod
dependency-version: 0.29.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: extractor-dependencies
- dependency-name: golang.org/x/tools
dependency-version: 0.38.0
dependency-type: direct:production
update-type: version-update:semver-minor
dependency-group: extractor-dependencies
...
Signed-off-by: dependabot[bot] <support@github.com>
|
2025-10-13 03:14:48 +00:00 |
|
Michael Nebel
|
ab9f78fee2
|
Merge pull request #20617 from michaelnebel/csharp/unboundlocations
C#: Reduce location TRAP creation for Fields, Parameters, Constructors, Destructors and Operators.
|
2025-10-10 13:47:57 +02:00 |
|
Tom Hvitved
|
d842107633
|
Merge pull request #20621 from hvitved/rust/static-target-addressable
Rust: Include tuple structs/variants in `CallExprBase.getStaticTarget()`
|
2025-10-10 13:00:28 +02:00 |
|
Michael Nebel
|
b8c3a28de3
|
C#: Add change note.
|
2025-10-10 11:47:19 +02:00 |
|
Owen Mansel-Chan
|
87f32dc49f
|
Merge pull request #20613 from owen-mc/go/sanitize-simpletypes-request-forgery
Go: sanitize simple types in `go/request-forgery`
|
2025-10-10 09:15:30 +01:00 |
|
Tom Hvitved
|
0fc2875527
|
Rust: Include tuple structs/variants in CallExprBase.getStaticTarget()
|
2025-10-10 09:48:08 +02:00 |
|
Owen Mansel-Chan
|
2c6af0cdb7
|
Merge pull request #20580 from owen-mc/codeowners-for-shared-libs-and-catchall
Add code owners for `/shared/` and a catch-all
|
2025-10-09 16:31:17 +01:00 |
|
Michael Nebel
|
e8fd843e52
|
C#: Update some tuple related tests.
|
2025-10-09 16:33:47 +02:00 |
|
Owen Mansel-Chan
|
11f20457e2
|
Fix team name
|
2025-10-09 14:15:07 +01:00 |
|
Michael Nebel
|
89681a49e6
|
C#: Only extract the unbound locations for constructors, destructors and user defined operators and use this in the QL code.
|
2025-10-09 14:13:27 +02:00 |
|
Michael Nebel
|
02428fc467
|
C#: Add some location examples for constructors, destructors and operators.
|
2025-10-09 14:13:24 +02:00 |
|
Michael Nebel
|
051b83f036
|
C#: Only extract the unbound location for fields and parameters and use this location in the QL code.
|
2025-10-09 14:04:13 +02:00 |
|
Michael Nebel
|
f200c3ce85
|
C#: Add field location example.
|
2025-10-09 14:04:10 +02:00 |
|
Michael Nebel
|
b9eae31172
|
C#: Add parameter locations test.
|
2025-10-09 14:04:08 +02:00 |
|
Owen Mansel-Chan
|
37151791b4
|
Add change notes
|
2025-10-09 12:26:32 +01:00 |
|
Owen Mansel-Chan
|
3cbce80d0b
|
Add SimpleTypeSanitizer to go/request-forgery
|
2025-10-09 12:17:21 +01:00 |
|
Owen Mansel-Chan
|
7599fdd8fa
|
Add request forgery test for numeric type
|
2025-10-09 12:17:19 +01:00 |
|
Owen Mansel-Chan
|
0c9cd09140
|
Make NumericOrBooleanSanitizer easier to access and rename it
|
2025-10-09 12:17:17 +01:00 |
|
Idriss Riouak
|
f52e3dcb7f
|
Merge pull request #20601 from github/idrissrio/java-localhost
Java integration test: wait for test servers to come up before running test
|
2025-10-09 10:57:11 +02:00 |
|
Geoffrey White
|
a7c166d161
|
Merge pull request #20599 from geoffw0/rust-ga-change-note
Rust: Add change note for Rust GA.
|
2025-10-09 08:51:44 +01:00 |
|
idrissrio
|
546d59ff9d
|
Java: Wait for test HTTP servers to be ready before running buildless test
|
2025-10-09 08:37:54 +02:00 |
|
Jon Janego
|
83519a9fcc
|
Merge pull request #20606 from github/changedocs-2.23.2
changedocs for 2.23.2
|
2025-10-08 11:07:58 -05:00 |
|
Jon Janego
|
4534d67107
|
Merge branch 'main' into changedocs-2.23.2
|
2025-10-08 11:00:45 -05:00 |
|
Jon Janego
|
9c610e8bab
|
Update links in CodeQL CLI changelog
|
2025-10-08 10:57:17 -05:00 |
|
Jon Janego
|
f8626cd417
|
changedocs for 2.23.2
|
2025-10-08 10:42:10 -05:00 |
|
Geoffrey White
|
d39c8d155c
|
Merge pull request #20574 from geoffw0/rustga3
Rust: Docs updates
|
2025-10-08 11:04:29 +01:00 |
|
Anders Schack-Mulligen
|
2d9b249367
|
Merge pull request #20600 from aschackmull/java/constant-exp-fix
Java: Fix bug in ConstantExpAppearsNonConstant.
|
2025-10-08 11:40:50 +02:00 |
|
Michael Nebel
|
4cc6a07620
|
Merge pull request #20593 from michaelnebel/csharp/reducetypeparameterandtuplelocations
C#: Reduce Type Parameter- and Tuple type location extraction.
|
2025-10-08 11:36:32 +02:00 |
|
Anders Schack-Mulligen
|
99f5dcaaa4
|
Java: Fix bug in ConstantExpAppearsNonConstant.
|
2025-10-08 10:32:51 +02:00 |
|
Michael Nebel
|
cdfa58645a
|
C#: Add change-note.
|
2025-10-08 10:14:51 +02:00 |
|
Idriss Riouak
|
28fe20e3e4
|
Merge pull request #20595 from github/idrissrio/java-lambda
Java: Add integration test for buildless lambda recovery
|
2025-10-08 09:53:29 +02:00 |
|
Paolo Tranquilli
|
75a7507017
|
Merge pull request #20590 from github/redsun82/rust-test-compatibility
Rust: test with the 1.90 toolchain
|
2025-10-08 09:00:30 +02:00 |
|
Asger F
|
10c9b747a5
|
Merge pull request #20586 from asgerf/js/api-graphs-block-this
JS: Restrict receiver-flow in API graphs
|
2025-10-08 08:41:56 +02:00 |
|
Geoffrey White
|
8a2be0910c
|
Rust: Add change note for Rust GA.
|
2025-10-07 23:10:31 +01:00 |
|
Ian Lynagh
|
2918d30697
|
Merge pull request #20597 from github/igfoo/bmn-ga
C++: Add a changenote for C/C++ BMN GA
|
2025-10-07 22:57:32 +01:00 |
|
Alexander Eyers-Taylor
|
825d3709d8
|
Merge pull request #20386 from github/alexet/overlay-informed-dataflow
Dataflow: Overlay informed dataflow.
|
2025-10-07 20:22:57 +01:00 |
|
Alex Eyers-Taylor
|
193cd46a76
|
DataFlow: Adress comments on overlay informed dataflow
|
2025-10-07 17:52:12 +01:00 |
|
Alex Eyers-Taylor
|
7a8d2392ee
|
Daatflow: Fix bug
|
2025-10-07 17:52:12 +01:00 |
|
Alex Eyers-Taylor
|
542bdf0792
|
Java: Use Overlay dataflow in java.
|
2025-10-07 17:52:12 +01:00 |
|
Alex Eyers-Taylor
|
3c110f2eb8
|
DataFlow: Add code for merging base with overlay.
|
2025-10-07 17:52:12 +01:00 |
|
Alex Eyers-Taylor
|
c49e2ab2da
|
DataFlow: Add code to do overlay informed dataflow.
|
2025-10-07 17:52:12 +01:00 |
|
Alex Eyers-Taylor
|
82e4fc9f0f
|
AlertFiltering: Expose filtering further.
|
2025-10-07 17:52:12 +01:00 |
|
Alex Eyers-Taylor
|
8c02130bcf
|
DataFlow: Rearrange files to group the parts that can be shared with overlay aware.
|
2025-10-07 17:52:12 +01:00 |
|
Ian Lynagh
|
791a92b146
|
C++: Add a changenote for C/C++ BMN GA
|
2025-10-07 17:32:36 +01:00 |
|
idrissrio
|
f69e5f5ffc
|
Java: Accept new test results after extractor changes
|
2025-10-07 16:55:53 +02:00 |
|
idrissrio
|
55b15a261a
|
Java: Add integration test for buildless lambda recovery
|
2025-10-07 16:55:52 +02:00 |
|
Michael Nebel
|
eb84b1441a
|
C#: Add some locations tests for type parameters and tuple types.
|
2025-10-07 15:26:33 +02:00 |
|
Michael Nebel
|
f0842e430d
|
C#: Respect the context when extracting locations for type parameters and tuple typles.
|
2025-10-07 15:26:31 +02:00 |
|
Anders Schack-Mulligen
|
18e33b193e
|
Merge pull request #20589 from aschackmull/java/array-entrypoint-read-taint
Java: Allow taint-read-steps for array sources.
|
2025-10-07 15:04:03 +02:00 |
|