jorgectf
|
e78e2ac266
|
Get rid of (get)regexMethod
|
2021-04-27 19:54:30 +02:00 |
|
jorgectf
|
18ce257fc8
|
Move RegexInjectionSink to query config (qll)
|
2021-04-27 19:54:29 +02:00 |
|
jorgectf
|
53d61c4fb6
|
Use custom Sink
|
2021-04-27 19:54:29 +02:00 |
|
jorgectf
|
36cc7b5e3f
|
Fix CompiledRegex
|
2021-04-27 19:54:28 +02:00 |
|
jorgectf
|
35f1c45d32
|
Change from Attribute to DataFlow::CallCfgNode in getRegexMethod()
|
2021-04-27 19:54:28 +02:00 |
|
jorgectf
|
c127b109d0
|
Create re.compile().ReMethod test
|
2021-04-27 19:54:27 +02:00 |
|
jorgectf
|
be09ffec3f
|
Create RegexEscape Range
|
2021-04-27 19:54:27 +02:00 |
|
jorgectf
|
805f86a5cf
|
Polish RegexEscape
|
2021-04-27 19:54:26 +02:00 |
|
jorgectf
|
3d990c5950
|
Get back to ApiGraphs
|
2021-04-27 19:54:26 +02:00 |
|
jorgectf
|
30554a16da
|
Format
|
2021-04-27 19:54:24 +02:00 |
|
jorgectf
|
ee1d2b645b
|
Delete DirectRegex and CompiledRegex
|
2021-04-27 19:54:24 +02:00 |
|
jorgectf
|
ce23db2e9c
|
Move Sanitizer to ReEscapeCall
|
2021-04-27 19:54:23 +02:00 |
|
jorgectf
|
b5ea41fcca
|
Fix CompiledRegex
|
2021-04-27 19:54:22 +02:00 |
|
jorgectf
|
d61adccd3c
|
Take main Concepts.qll out of the PR
|
2021-04-27 19:54:22 +02:00 |
|
jorgectf
|
a1a3c98d92
|
Undo main Concepts.qll change
|
2021-04-27 19:54:21 +02:00 |
|
jorgectf
|
28fdeba4fa
|
Structure development
|
2021-04-27 19:54:20 +02:00 |
|
jorgectf
|
444a15a461
|
Polish imports
|
2021-04-27 19:54:20 +02:00 |
|
Jorge
|
0f20eeb395
|
Apply suggestions
Co-authored-by: yoff <lerchedahl@gmail.com>
|
2021-04-27 19:54:19 +02:00 |
|
Jorge
|
b27b77c38f
|
Apply suggestions from code review
Co-authored-by: yoff <lerchedahl@gmail.com>
|
2021-04-27 19:54:18 +02:00 |
|
Jorge
|
249e4097e3
|
Change query ID
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2021-04-27 19:54:17 +02:00 |
|
jorgectf
|
b207929e0a
|
RegexExecution restructuring
|
2021-04-27 19:54:16 +02:00 |
|
jorgectf
|
3daec8e6a2
|
Enclose Sinks and ReMethods in a module
|
2021-04-27 19:54:15 +02:00 |
|
jorgectf
|
caaf5436c6
|
Attempt to restructuring ReMethods and RegexExecution's modules
|
2021-04-27 19:54:14 +02:00 |
|
jorgectf
|
6d5a0f2f84
|
Limit Sanitizer to re.escape(arg)
|
2021-04-27 19:54:13 +02:00 |
|
jorgectf
|
a1b5cc3bc6
|
Typo
|
2021-04-27 19:54:13 +02:00 |
|
jorgectf
|
e4736d064e
|
Typo
|
2021-04-27 19:54:12 +02:00 |
|
jorgectf
|
f45307f990
|
Apply rebase
|
2021-04-27 19:54:12 +02:00 |
|
jorgectf
|
5dae920783
|
Edit filenames to match consistent naming
|
2021-04-27 19:54:11 +02:00 |
|
jorgectf
|
63f708dd57
|
Apply suggestions
|
2021-04-27 19:54:10 +02:00 |
|
Jorge
|
6cc714464c
|
Apply suggestions from code review
Co-authored-by: yoff <lerchedahl@gmail.com>
|
2021-04-27 19:54:09 +02:00 |
|
jorgectf
|
21f8135fa6
|
Move to experimental folder
|
2021-04-27 19:54:08 +02:00 |
|
jorgectf
|
afc4f51e9c
|
Remove CWE references
|
2021-04-27 19:54:07 +02:00 |
|
jorgectf
|
bd3d2ec686
|
Update to match consistent naming across languages
|
2021-04-27 19:54:07 +02:00 |
|
jorgectf
|
7adc3c2fba
|
Upload ReDoS query, qhelp and tests
|
2021-04-27 19:54:05 +02:00 |
|
Tom Hvitved
|
37377644c9
|
Merge pull request #5781 from hvitved/java/predictable-seed-df6
Java: Use separate data-flow copy for `PredictableSeedFlowConfiguration`
|
2021-04-27 19:01:55 +02:00 |
|
Andrew Eisenberg
|
c6db90e9b7
|
Merge pull request #5775 from aeisenberg/aeisenberg/codeql-action-main
Actions: Use the main branch of the codeql action
|
2021-04-27 09:36:33 -07:00 |
|
Tamás Vajk
|
4cc88662e2
|
Merge pull request #5557 from tamasvajk/feature/java-sinks-csv
Java: convert sinks to CSV
|
2021-04-27 15:58:09 +02:00 |
|
Tamas Vajk
|
5b79094f34
|
Fix naming in HTTPS URL check
|
2021-04-27 14:59:52 +02:00 |
|
yoff
|
0509a12790
|
Merge pull request #5770 from tausbn/python-small-api-graph-fix
Python: Use only `TApiNode` in `API::Impl`
|
2021-04-27 14:06:09 +02:00 |
|
Geoffrey White
|
afa89256c5
|
Merge pull request #5780 from MathiasVP/cleanup-missingGuard-predicates-after-range-analysis-fix
C++: Cleanup missingGuardAgainstOverflow
|
2021-04-27 12:56:10 +01:00 |
|
Chris Smowton
|
64a2320be7
|
Merge pull request #5757 from smowton/smowton/admin/fix-dead-qhelp-links
Fix all dead qhelp links
|
2021-04-27 12:17:08 +01:00 |
|
Tom Hvitved
|
2e266c7ddd
|
Merge pull request #5756 from hvitved/csharp/string-builder-fluent
C#: Add missing `StringBuilder` flow summaries
|
2021-04-27 11:24:56 +02:00 |
|
Tom Hvitved
|
fb606112fa
|
Merge pull request #5754 from hvitved/csharp/guards/performance
C#: Improve performance of guards library
|
2021-04-27 10:53:01 +02:00 |
|
Tamas Vajk
|
e08b629cb5
|
Add documentation for URL opening sinks
|
2021-04-27 10:32:41 +02:00 |
|
Tom Hvitved
|
017beb6786
|
Java: Use separate data-flow copy for PredictableSeedFlowConfiguration
|
2021-04-27 10:07:33 +02:00 |
|
CodeQL CI
|
79ed94b22c
|
Merge pull request #5779 from erik-krogh/updateJSAndTSVersionDoc
Approved by esbena
|
2021-04-27 00:51:58 -07:00 |
|
Mathias Vorreiter Pedersen
|
04a785b9fb
|
C++: Accept test changes.
|
2021-04-27 09:43:27 +02:00 |
|
Mathias Vorreiter Pedersen
|
a41e9055c5
|
C++: Delete the fix that was introduced in bb447d7174. This is no longer needed after #5678.
|
2021-04-27 09:43:02 +02:00 |
|
Mathias Vorreiter Pedersen
|
05d693e3bb
|
C++: Also include the assignment versions in exprThatCanOverflow.
|
2021-04-27 09:41:13 +02:00 |
|
Rasmus Wriedt Larsen
|
37db21d269
|
Merge pull request #5284 from yoff/python-port-insecure-protocol
Python: port py/insecure-protocol
|
2021-04-27 09:30:18 +02:00 |
|