Asger Feldthaus
|
fd293d07d7
|
JS: Address doc review
|
2020-12-09 09:58:52 +00:00 |
|
Asger Feldthaus
|
04f51bef5e
|
JS: Add missing qldoc
|
2020-12-07 10:52:38 +00:00 |
|
Asger Feldthaus
|
f96c425a72
|
JS: Deny -> block
|
2020-12-07 10:50:01 +00:00 |
|
Asger Feldthaus
|
254ac7f963
|
JS: Fix TypeofCheck
|
2020-12-07 10:46:00 +00:00 |
|
Asger Feldthaus
|
0496642b0b
|
JS: Add test for captured flow into callback
|
2020-12-07 10:34:27 +00:00 |
|
Asger Feldthaus
|
355cfaaf42
|
JS: Autoformat
|
2020-12-07 10:16:39 +00:00 |
|
Asger Feldthaus
|
1b0bec9143
|
JS: Remove magic from barrier guard predicates
|
2020-12-07 10:16:39 +00:00 |
|
Asger Feldthaus
|
fe86465a0b
|
JS: Refactor store/load flow a bit
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
f132b4a279
|
JS: Add type confusion sink for prototype pollution checks
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
e10a22ec26
|
JS: Restrict size of some predicates
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
daab3c1437
|
JS: Add tests and fix some bugs
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
0a7513fdfb
|
JS: Move and rename test cases as well
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
479dcf56ad
|
JS: Update to use more inclusive language
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
544b3d9631
|
JS: Change note
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
e42ca881a3
|
JS: Update security suite after move to CWE-915
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
ca38a1c8b9
|
JS: Update CWE tags
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
25161ed338
|
JS: Move all prototype pollution queries to CWE-915
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
877b4b0752
|
JS: Move and rename other prototype pollution queries
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
972c4d61e5
|
JS: Add PrototypePollutingAssignment
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
ef52c46aed
|
JS: Add spread step in TaintedObject
|
2020-12-07 10:16:37 +00:00 |
|
Sauyon Lee
|
b5ec26d935
|
Merge pull request #4744 from github/sauyon/html-refactor
JavaScript: Factor out HTML extractor
|
2020-12-07 02:06:42 -08:00 |
|
Sauyon Lee
|
17e450f227
|
JavaScript: Factor out HTML extractor
|
2020-12-06 05:04:10 -08:00 |
|
Jonas Jensen
|
bc340e210b
|
Merge pull request #4745 from ihsinme/main
CPP: Add query for CWE-191 into experimental this reveals a dangerous comparison
|
2020-12-04 18:00:41 +01:00 |
|
yo-h
|
54d7cac46d
|
Merge pull request #4718 from aschackmull/java/cleanup-deprecated
Java: Remove some deprecated classes.
|
2020-12-04 11:17:14 -05:00 |
|
yo-h
|
a5393b4661
|
Merge pull request #4746 from aschackmull/java/ssa-perf
Java: Improve performance of SSA.
|
2020-12-04 11:16:39 -05:00 |
|
Tamás Vajk
|
4226467556
|
Merge pull request #4678 from tamasvajk/feature/external-api-untrusted-data
C#: Add queries to check untrusted data flow to external APIs
|
2020-12-04 15:03:09 +01:00 |
|
Cornelius Riemenschneider
|
2ea9b4a62b
|
Merge pull request #4719 from geoffw0/issue84
C++: Create tests readme.
|
2020-12-04 13:49:56 +01:00 |
|
Tamas Vajk
|
aa3ae0f567
|
Remove calls to deprecated predicates
|
2020-12-04 13:28:14 +01:00 |
|
Jonas Jensen
|
9cf318b72c
|
C++: Autoformat the new query
Tweak whitespace, also in the alert message.
|
2020-12-04 13:27:07 +01:00 |
|
Tamas Vajk
|
d55fbc8a05
|
Add test cases for safe API calls
|
2020-12-04 13:26:53 +01:00 |
|
Tamas Vajk
|
24670160c2
|
Address code review findings
|
2020-12-04 13:26:53 +01:00 |
|
Tamas Vajk
|
cd5c1f06ee
|
C#: Add queries to check untrusted data flow to external APIs
|
2020-12-04 13:26:53 +01:00 |
|
Jonas Jensen
|
bf88df8134
|
C++: CRLF -> LF line endings
|
2020-12-04 13:25:32 +01:00 |
|
CodeQL CI
|
0f5f0ed99e
|
Merge pull request #4776 from asgerf/js/electron-openshell
Approved by erik-krogh
|
2020-12-04 09:12:44 +00:00 |
|
Asger F
|
22dbaf28ab
|
Merge pull request #4709 from asgerf/js/typescript-4.1
JS: Support for TypeScript 4.1
|
2020-12-04 09:10:14 +00:00 |
|
Jonas Jensen
|
b4be72268d
|
Merge pull request #4722 from rdmarsh2/rdmarsh2/cpp/range-analysis-overflow-perf
C++: Filter out lower bounds on overflowing exprs
|
2020-12-04 08:29:21 +01:00 |
|
ihsinme
|
69ed608a11
|
Update UnsignedDifferenceExpressionComparedZero.ql
|
2020-12-04 09:47:11 +03:00 |
|
Robert Marsh
|
b45f7846db
|
C++: autoformat
|
2020-12-03 15:48:42 -08:00 |
|
Asger Feldthaus
|
20d9848f07
|
JS: Add test case
|
2020-12-03 15:08:43 +00:00 |
|
Asger Feldthaus
|
e66a49bea6
|
JS: Change note
|
2020-12-03 13:58:40 +00:00 |
|
Asger Feldthaus
|
ec6b8d6d3a
|
JS: Remove old workaround for template literals in import
|
2020-12-03 13:58:40 +00:00 |
|
Asger Feldthaus
|
757398f5fd
|
JS: Add upgrade script and stats
|
2020-12-03 13:58:39 +00:00 |
|
Asger Feldthaus
|
3b3052d792
|
JS: Autoformat
|
2020-12-03 13:58:39 +00:00 |
|
Asger Feldthaus
|
5676891e44
|
JS: Add TemplateLiteralTypeExpr
|
2020-12-03 13:58:39 +00:00 |
|
Asger Feldthaus
|
9da5c5cc70
|
JS: Update to TypeScript 4.1.2
|
2020-12-03 13:58:39 +00:00 |
|
Asger F
|
254072dd6d
|
Merge pull request #4546 from toufik-airane/main
JS: Add ElectronShellOpenExternalSink class for Electron framework security
|
2020-12-03 13:20:46 +00:00 |
|
Tamás Vajk
|
3eb55ddc0b
|
Merge pull request #4704 from tamasvajk/feature/stats2
C#: Update DB stats file
|
2020-12-03 13:13:43 +01:00 |
|
Mathias Vorreiter Pedersen
|
1142a79ad5
|
Merge pull request #4766 from criemen/cleanup-flow-tests
C++: Cleanup data/taint flow tests
|
2020-12-03 10:10:39 +01:00 |
|
CodeQL CI
|
edbbc846d0
|
Merge pull request #4753 from max-schaefer/js/more-nosql-query-args
Approved by asgerf, mchammer01
|
2020-12-03 08:46:47 +00:00 |
|
Tamás Vajk
|
04bacf4347
|
Merge pull request #4760 from tamasvajk/feature/cil-debug-build
C#: Fix CIL trap file writing in debug mode
|
2020-12-02 22:08:22 +01:00 |
|