github-actions[bot]
|
6f4562f3bd
|
Release preparation for version 2.20.5
|
2025-02-17 16:55:54 +00:00 |
|
Jami
|
2a8cc00284
|
Merge pull request #18288 from jcogs33/jcogs33/csrf-unprotected-request-type
Java: add CSRF query
|
2025-02-11 15:32:56 -05:00 |
|
github-actions[bot]
|
573e53e454
|
Release preparation for version 2.20.4
|
2025-02-03 15:19:35 +00:00 |
|
Jami Cogswell
|
27aa9c97a4
|
Java: add change note
|
2025-01-30 10:14:07 -05:00 |
|
Owen Mansel-Chan
|
2d76466405
|
Add change note
|
2025-01-28 15:35:28 +00:00 |
|
Michael Nebel
|
b552c8aba9
|
Java: Add change-note.
|
2025-01-27 10:22:19 +01:00 |
|
github-actions[bot]
|
a0512a50f2
|
Release preparation for version 2.20.2
|
2025-01-20 21:11:12 +00:00 |
|
Owen Mansel-Chan
|
883301938b
|
Merge pull request #18161 from owen-mc/java/weak-crypto-algo-more-informative
Java: Make `java/weak-cryptographic-algorithm` give a reason why the algo is insecure
|
2025-01-13 23:43:04 +00:00 |
|
Owen Mansel-Chan
|
0f8f5d2793
|
Merge branch 'main' into post-release-prep/codeql-cli-2.20.1
|
2025-01-08 16:28:23 +00:00 |
|
github-actions[bot]
|
88b6f1e79a
|
Release preparation for version 2.20.1
|
2025-01-07 20:50:36 +00:00 |
|
Dave Bartolomeo
|
72a53c4b23
|
Revert "Release preparation for version 2.20.1"
|
2025-01-07 13:32:23 -05:00 |
|
github-actions[bot]
|
fbf9f2fff8
|
Release preparation for version 2.20.1
|
2025-01-07 17:20:13 +00:00 |
|
Dave Bartolomeo
|
22e030584c
|
Revert "Release preparation for version 2.20.1"
|
2025-01-07 12:14:27 -05:00 |
|
github-actions[bot]
|
a121c5a5d0
|
Release preparation for version 2.20.1
|
2025-01-06 18:20:22 +00:00 |
|
Chris Smowton
|
d0eab598b1
|
Change note
|
2025-01-06 14:44:12 +00:00 |
|
github-actions[bot]
|
96564b7128
|
Release preparation for version 2.20.0
|
2024-12-04 16:01:14 +00:00 |
|
Henry Mercer
|
963f084d87
|
Merge branch 'main' into henrymercer/merge-back-rc-3.16
|
2024-12-04 13:39:10 +00:00 |
|
Owen Mansel-Chan
|
95d26d96d2
|
Add change note
|
2024-11-29 11:54:30 +00:00 |
|
Jami Cogswell
|
05b6700607
|
Java: add SHA384 to list of secure algorithms
|
2024-11-25 09:27:53 -05:00 |
|
Arthur Baars
|
c2b342f1a0
|
Merge pull request #18084 from github/aibaars/java-sha3
Java: add SHA3 family to list of secure crypto algorithms
|
2024-11-25 15:07:43 +01:00 |
|
Jami
|
f0045692a7
|
Merge pull request #17869 from jcogs33/jcogs33/improve-weak-crypto
Java: Improve weak crypto query
|
2024-11-24 12:04:00 -05:00 |
|
Arthur Baars
|
c6eaed343d
|
Java: add SHA3 family to list of secure crypto algorithms
|
2024-11-22 19:03:00 +01:00 |
|
Alexander Eyers-Taylor
|
c0474c4e45
|
Revert "Revert "Post-release preparation for codeql-cli-2.19.4""
|
2024-11-21 15:37:52 +00:00 |
|
Alexander Eyers-Taylor
|
4effe9e364
|
Revert "Post-release preparation for codeql-cli-2.19.4"
|
2024-11-21 14:43:15 +00:00 |
|
github-actions[bot]
|
9783a11565
|
Release preparation for version 2.19.4
|
2024-11-19 16:21:37 +00:00 |
|
github-actions[bot]
|
cc7b724123
|
Release preparation for version 2.19.3
|
2024-11-04 16:37:28 +00:00 |
|
Jami Cogswell
|
459d16824e
|
Java: weak crypto: do not report weak hash algorithms
|
2024-11-03 18:22:06 -05:00 |
|
github-actions[bot]
|
255f55cf1a
|
Release preparation for version 2.19.2
|
2024-10-15 10:29:25 +00:00 |
|
Kristen Newbury
|
df18891a2f
|
Fix changenote for query removal change
|
2024-10-03 17:36:42 -04:00 |
|
Kristen Newbury
|
e98db7fd20
|
Add changenote for query removal change
|
2024-10-03 17:28:59 -04:00 |
|
github-actions[bot]
|
455c8c5953
|
Release preparation for version 2.19.1
|
2024-09-30 17:59:48 +00:00 |
|
Mauro Baluda
|
5ae51f0b56
|
Address review
|
2024-09-18 19:28:03 +02:00 |
|
github-actions[bot]
|
acdafd9646
|
Release preparation for version 2.19.0
|
2024-09-16 10:56:10 +00:00 |
|
github-actions[bot]
|
91537cdf9a
|
Release preparation for version 2.18.4
|
2024-09-09 16:08:48 +00:00 |
|
github-actions[bot]
|
17cd9624fb
|
Release preparation for version 2.18.3
|
2024-08-21 17:13:52 +00:00 |
|
github-actions[bot]
|
019da8c287
|
Release preparation for version 2.18.2
|
2024-08-07 14:02:38 +00:00 |
|
Alexander Eyers-Taylor
|
46577b585e
|
Revert "Release preparation for version 2.18.2"
|
2024-08-07 14:24:37 +01:00 |
|
github-actions[bot]
|
c14ba0e4bd
|
Release preparation for version 2.18.2
|
2024-08-06 12:46:15 +00:00 |
|
Anders Schack-Mulligen
|
4d023f14a6
|
Merge pull request #17075 from RobbingDaHood/17052-second-try-do-not-expose-error-message
Java: 17052 Second try: do not expose error message
|
2024-08-02 12:44:27 +02:00 |
|
Owen Mansel-Chan
|
8901b1fd14
|
Merge pull request #17100 from owen-mc/java/sensitive-log/ignore-tokenizer
Java: whitelist variable names containing "tokenizer" for `java/sensitive-log`
|
2024-07-31 12:16:03 +01:00 |
|
Owen Mansel-Chan
|
1cb5f35c56
|
Add change note
|
2024-07-30 16:29:38 +01:00 |
|
Owen Mansel-Chan
|
44b6309e07
|
Add change note
|
2024-07-30 15:44:00 +01:00 |
|
RobbingDaHood
|
1cb58922a2
|
Minor changes to formulations for java/error-message-exposure
Co-authored-by: Anders Schack-Mulligen <aschackmull@users.noreply.github.com>
|
2024-07-29 16:48:15 +02:00 |
|
Daniel Winther Petersen
|
1c1ba7734f
|
Now alerts about exposing exception.getMessage() in servlet responses are split out of java/stack-trace-exposure into its own alert java/error-message-exposure because this is a better fit.
|
2024-07-25 18:12:45 +02:00 |
|
Owen Mansel-Chan
|
4c8da54b64
|
Merge pull request #17036 from chmodxxx/sbaddou/fix
Java: Move SensitiveLoggerConfig source to extensible format
|
2024-07-23 14:55:26 +01:00 |
|
Salah Baddou
|
092de640fe
|
add change-notes
|
2024-07-23 11:04:56 +01:00 |
|
github-actions[bot]
|
368bcb684a
|
Release preparation for version 2.18.1
|
2024-07-22 21:30:50 +00:00 |
|
Chuan-kai Lin
|
23320b6e5e
|
Revert "Release preparation for version 2.18.1"
|
2024-07-22 13:22:49 -07:00 |
|
github-actions[bot]
|
55935fc123
|
Release preparation for version 2.18.1
|
2024-07-22 14:56:15 +00:00 |
|
Owen Mansel-Chan
|
e2356d9820
|
Merge pull request #16914 from owen-mc/java/android-app-detection
Java: Improve Android app detection
|
2024-07-16 21:52:43 +01:00 |
|