Michael Nebel
|
03ecd24469
|
Lower the precision of a range of harcoded password queries to remove them from query suites.
|
2025-05-19 09:26:45 +02:00 |
|
erik-krogh
|
0f9b4334cc
|
remove some FPs in js/password-in-configuration-file
|
2022-10-26 11:51:56 +02:00 |
|
Erik Krogh Kristensen
|
ef2eacebce
|
add a js/empty-password-in-configuration-file query
|
2022-01-19 10:48:45 +01:00 |
|
Erik Krogh Kristensen
|
b936a04826
|
add some fitting CWEs to existing queries
|
2021-09-14 14:59:24 +02:00 |
|
Calum Grant
|
771e686946
|
Update security-severity scores
|
2021-06-15 13:25:17 +01:00 |
|
Calum Grant
|
a594afb828
|
Add security-severity metadata
|
2021-06-10 20:11:08 +01:00 |
|
Esben Sparre Andreasen
|
0e2d2f8662
|
JS: whitelist some hardcoded dummy-passwords in two queries
|
2019-09-16 10:11:43 +02:00 |
|
Anders Schack-Mulligen
|
ca45fb5a60
|
JavaScript: Autoformat.
|
2019-09-06 09:04:51 +02:00 |
|
Max Schaefer
|
d233cea79d
|
JavaScript: Lower precision of PasswordInConfigurationFile.
In spite of recent improvements, this query is still too noisy to show
by default.
|
2019-06-05 08:09:19 +01:00 |
|
Max Schaefer
|
a4876270ec
|
JavaScript: Tweak PasswordInConfigurationFile alerts.
Only highlight first line, and include the password in the alert
message.
|
2019-06-05 08:09:19 +01:00 |
|
Max Schaefer
|
b478c0ddaa
|
JavaScript: Further broaden the whitelist in PasswordInConfigurationFile.
|
2019-05-09 17:07:59 +01:00 |
|
Max Schaefer
|
c16e9a77f3
|
JavaScript: Fix a few false positives in PasswordInConfigurationFile.
|
2019-05-08 08:26:05 +01:00 |
|
Max Schaefer
|
1d5bb97121
|
JavaScript: Refine PasswordInConfigurationFile to avoid FPs.
We now exclude passwords that look like they might be filled in via
templating or shell substitution.
|
2019-04-15 12:10:21 +01:00 |
|
Max Schaefer
|
31bb39a810
|
JavaScript: Autoformat all QL files.
|
2019-01-07 10:15:45 +00:00 |
|
Pavel Avgustinov
|
b55526aa58
|
QL code and tests for C#/C++/JavaScript.
|
2018-08-02 17:53:23 +01:00 |
|