github-actions[bot]
|
ef04f927fb
|
Release preparation for version 2.24.2
|
2026-02-16 13:29:25 +00:00 |
|
Owen Mansel-Chan
|
cf73d96c9d
|
Update test results (remove SPURIOUS annotations)
|
2026-02-16 12:03:02 +00:00 |
|
Owen Mansel-Chan
|
597be6a1c0
|
Add change note
|
2026-02-16 12:01:15 +00:00 |
|
Owen Mansel-Chan
|
94f1d94a2b
|
Rename MethodCall ma to mc
|
2026-02-16 12:01:14 +00:00 |
|
Owen Mansel-Chan
|
9fc95f5171
|
Expand log injection sanitizers to annotation regex matches
|
2026-02-16 12:01:13 +00:00 |
|
Owen Mansel-Chan
|
924bb92d91
|
Expand log injection sanitizer guards to non-annotation regex matches
|
2026-02-16 12:01:11 +00:00 |
|
Owen Mansel-Chan
|
60e58f8219
|
Refactor logInjectionGuard part 2
|
2026-02-16 12:01:10 +00:00 |
|
Owen Mansel-Chan
|
6c0c1d558e
|
Refactor logInjectionGuard part 1
|
2026-02-16 12:01:08 +00:00 |
|
Owen Mansel-Chan
|
146fc7a8c0
|
Add failing log injection test for @Pattern validation
|
2026-02-16 12:01:07 +00:00 |
|
Owen Mansel-Chan
|
47a9f87d9b
|
Merge pull request #21310 from owen-mc/java/regex-execution
Java: Add RegexMatch concept and recognise `@Pattern` annotation as sanitizer
|
2026-02-16 09:11:47 +00:00 |
|
Owen Mansel-Chan
|
16ddb5658f
|
Small refactor for stylistic consistency
|
2026-02-15 14:39:23 +00:00 |
|
Owen Mansel-Chan
|
d6b71a346e
|
Extend RegexMatch framework to allow for MatcherMatchesCall edge case
|
2026-02-15 14:39:21 +00:00 |
|
Owen Mansel-Chan
|
8f8f4c2d52
|
Fix Matcher.matches edge case
|
2026-02-14 00:28:37 +00:00 |
|
Owen Mansel-Chan
|
90befa0c00
|
Add failing test for Matcher.matches() edge case
|
2026-02-14 00:28:34 +00:00 |
|
Owen Mansel-Chan
|
ca4c988e97
|
Remove redundant variable
|
2026-02-13 22:58:09 +00:00 |
|
Owen Mansel-Chan
|
2e0f244376
|
Improve QLDoc on RegexMatch.getName()
|
2026-02-13 22:55:01 +00:00 |
|
Owen Mansel-Chan
|
c7099584b4
|
Put imports implementing abstract classes in private module
|
2026-02-13 22:51:53 +00:00 |
|
Owen Mansel-Chan
|
3c161f9c93
|
Make contract of RegexMatch clear
|
2026-02-13 22:47:44 +00:00 |
|
Owen Mansel-Chan
|
1fefa989d7
|
Rename RegexMatch and only include expressions
|
2026-02-13 22:45:48 +00:00 |
|
Owen Mansel-Chan
|
953ff9f0d0
|
PatternAnnotation.getString() should only be field reads
|
2026-02-13 22:41:20 +00:00 |
|
Owen Mansel-Chan
|
106254b220
|
Improve QLDocs
|
2026-02-13 22:40:36 +00:00 |
|
Owen Mansel-Chan
|
5bdf550317
|
Fix QLDocs
|
2026-02-12 16:57:14 +00:00 |
|
Owen Mansel-Chan
|
c539c2f4fd
|
Add change note
|
2026-02-12 16:57:12 +00:00 |
|
Owen Mansel-Chan
|
bfe26c1989
|
Add @Pattern as RegexExecution => SSRF sanitizer
|
2026-02-12 16:57:11 +00:00 |
|
Owen Mansel-Chan
|
d0999e3abd
|
Add failing test for @Pattern validation
|
2026-02-12 16:57:04 +00:00 |
|
Anders Schack-Mulligen
|
5c53677051
|
Java: Deprecate UnreachableBlocks.
|
2026-02-12 11:06:34 +01:00 |
|
Owen Mansel-Chan
|
6a8204d28c
|
"dataflow" -> "data flow" in QLDoc
|
2026-02-11 13:41:14 +00:00 |
|
Owen Mansel-Chan
|
1ee5728311
|
Add missing QLDoc
|
2026-02-11 13:40:20 +00:00 |
|
Owen Mansel-Chan
|
a22fd39230
|
Use RegexExecution in sanitizer definitions (expands scope)
|
2026-02-11 13:09:48 +00:00 |
|
Owen Mansel-Chan
|
fa3fba4a00
|
Use new regex-related classes (no functional change)
|
2026-02-11 13:09:46 +00:00 |
|
Owen Mansel-Chan
|
44eeee5757
|
Add and improve classes for regex-related methods
|
2026-02-11 13:09:45 +00:00 |
|
Owen Mansel-Chan
|
e6dbd525c3
|
Add RegexExecution in Concepts.qll
|
2026-02-11 13:09:42 +00:00 |
|
Anders Schack-Mulligen
|
5116b0c1e5
|
Java: Add delayed deprecation annotation.
|
2026-02-10 14:02:48 +01:00 |
|
Anders Fugmann
|
c5179e40c6
|
Kotlin: Add change note for supporting 2.3.10
|
2026-02-06 14:59:34 +01:00 |
|
Anders Fugmann
|
d5827b5cca
|
Kotlin: Support Kotlin 2.3.10
|
2026-02-06 14:54:08 +01:00 |
|
Anders Schack-Mulligen
|
29e01748b7
|
Merge pull request #21267 from aschackmull/java/rename-misc
Java: Rename several AST predicates.
|
2026-02-05 11:15:29 +01:00 |
|
Anders Schack-Mulligen
|
11003e685d
|
Java: Fix qldoc
|
2026-02-05 10:37:19 +01:00 |
|
Anders Schack-Mulligen
|
32fe12a6dd
|
Java: Delay deprecation a bit.
|
2026-02-05 08:51:27 +01:00 |
|
Anders Schack-Mulligen
|
2d02908e7f
|
Java: Add change note.
|
2026-02-04 14:43:32 +01:00 |
|
Anders Schack-Mulligen
|
4fcf3fbff8
|
Java: Make loop classes extend LoopStmt and use getBody instead of getStmt.
|
2026-02-04 14:43:31 +01:00 |
|
Anders Schack-Mulligen
|
6f40ac15b4
|
Java: Rename ReturnStmt.getResult to getExpr.
|
2026-02-04 14:43:31 +01:00 |
|
Anders Schack-Mulligen
|
36fa0a22f9
|
Java: Rename getTrueExpr/getFalseExpr on ConditionalExpr to getThen/getElse.
|
2026-02-04 13:38:11 +01:00 |
|
Anders Schack-Mulligen
|
5e6e64b2b7
|
Java: Rename UnaryExpr.getExpr to getOperand.
|
2026-02-04 10:50:49 +01:00 |
|
Anders Schack-Mulligen
|
2d61fc5309
|
Java: Add support for "View CFG".
|
2026-02-03 15:49:27 +01:00 |
|
github-actions[bot]
|
73d06f26cb
|
Post-release preparation for codeql-cli-2.24.1
|
2026-02-02 14:04:26 +00:00 |
|
Henry Mercer
|
5f1fd57f84
|
Fix formatting of Kotlin version ranges
|
2026-02-02 12:22:50 +00:00 |
|
Henry Mercer
|
38fcc61817
|
Fix formatting in Kotlin changelog
|
2026-02-02 12:10:15 +00:00 |
|
github-actions[bot]
|
0db542e9f0
|
Release preparation for version 2.24.1
|
2026-02-02 12:09:09 +00:00 |
|
Anders Peter Fugmann
|
78495035a6
|
Merge pull request #20965 from github/andersfugmann/kotlin_2.3.0-beta2
Kotlin: Support Kotlin 2.3.0
|
2026-01-30 11:37:19 +01:00 |
|
Owen Mansel-Chan
|
a35e7b27af
|
Merge pull request #21226 from owen-mc/java/update-qhelp-unrelease-lock
Java: Improve qhelp for `java/unreleased-lock` and add lock type exclusion
|
2026-01-28 09:46:31 +00:00 |
|