Tony Torralba
|
ff2d78d2c8
|
Update go/ql/src/Security/CWE-770/UncontrolledAllocationSize.ql
|
2024-03-11 15:53:40 +01:00 |
|
Tony Torralba
|
a09eb9f4c5
|
Update go/ql/src/Security/CWE-770/UncontrolledAllocationSize.ql
Co-authored-by: Ben Ahmady <32935794+subatoi@users.noreply.github.com>
|
2024-03-11 08:58:59 +01:00 |
|
Tony Torralba
|
138ce42cf6
|
Fix qhelp
|
2024-03-07 15:22:46 +01:00 |
|
Tony Torralba
|
7d74125508
|
Go: Promote go/uncontrolled-allocation-size
|
2024-03-07 15:17:49 +01:00 |
|
Tamás Vajk
|
6d5fd3c9de
|
Merge pull request #15827 from tamasvajk/buildless/impr-progress-reporting
C#: Improve buildless progress reporting
|
2024-03-07 10:00:06 +01:00 |
|
Owen Mansel-Chan
|
0ebe045cd8
|
Merge pull request #15819 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2024-03-06 15:35:14 +00:00 |
|
Tamas Vajk
|
c4f2bbda2a
|
Simplify task counter incrementing
|
2024-03-06 16:12:14 +01:00 |
|
Tamas Vajk
|
34308eee8d
|
C#: Improve buildless progress reporting
|
2024-03-06 16:11:19 +01:00 |
|
Owen Mansel-Chan
|
4e5a6d770a
|
Merge branch 'main' into workflow/coverage/update
|
2024-03-06 13:43:05 +00:00 |
|
Owen Mansel-Chan
|
f1115af146
|
Merge pull request #15130 from Malayke/main
Go: new query for detect DOS vulnerability
|
2024-03-06 11:32:57 +00:00 |
|
Tony Torralba
|
f4c2e65614
|
Merge pull request #15812 from atorralba/atorralba/go/squirrel-sinks
Go: Add SQLi sinks for Squirrel
|
2024-03-06 12:09:19 +01:00 |
|
Owen Mansel-Chan
|
316273c7f3
|
Merge branch 'main' into workflow/coverage/update
|
2024-03-06 10:14:46 +00:00 |
|
Jeroen Ketema
|
66d2a8499d
|
Merge pull request #15816 from MathiasVP/remove-ssa-pruning-stage
C++: Remove the pruning stage from dataflow SSA
|
2024-03-06 11:04:05 +01:00 |
|
Malayke
|
02bab4c15a
|
Update go/ql/src/experimental/CWE-770/DenialOfService.ql
Co-authored-by: Owen Mansel-Chan <62447351+owen-mc@users.noreply.github.com>
|
2024-03-06 17:57:20 +08:00 |
|
Anders Schack-Mulligen
|
0dbe8c3d8a
|
Merge pull request #15140 from hvitved/dataflow/pruned-ctx-sensitivity
Data flow: prune context-sensitivity relations
|
2024-03-06 10:04:48 +01:00 |
|
Jeroen Ketema
|
d13ea0b6c9
|
Merge pull request #15817 from github/rdmarsh2/suppress-expr-destructors
C++: Suppress implicit destructors on expr in preparation for destructors on temporaries
|
2024-03-06 09:54:50 +01:00 |
|
Jeroen Ketema
|
6972f9b31d
|
C++: Update syntax-zoo expected test results
|
2024-03-06 09:34:47 +01:00 |
|
Harry Maclean
|
350dab4621
|
Merge pull request #15722 from hmac/mad-sinks
|
2024-03-06 08:18:19 +00:00 |
|
github-actions[bot]
|
b71074f9c4
|
Add changed framework coverage reports
|
2024-03-06 00:16:26 +00:00 |
|
Robert Marsh
|
fbbd57b34f
|
C++: Suppress epxr destructors in preparation for temporaries
|
2024-03-05 21:12:12 +00:00 |
|
Mathias Vorreiter Pedersen
|
f400228037
|
C++: Remove the pruning stage from SSA.
|
2024-03-05 12:55:55 -08:00 |
|
Joe Farebrother
|
dcc6f83d3b
|
Merge pull request #15782 from joefarebrother/ruby-typhoeus
Ruby: Model `Typhoeus::Request.new`
|
2024-03-05 16:55:38 +00:00 |
|
Joe Farebrother
|
7027b7fe82
|
Apply review suggestions: Use getInstance and clarify predicate name/qldoc. Also fix changenote formatting.
|
2024-03-05 16:34:48 +00:00 |
|
Tamás Vajk
|
b4fdd4e222
|
Merge pull request #15808 from tamasvajk/buildless/package-source-telemetry
C#: Add package source error count to DB
|
2024-03-05 17:20:38 +01:00 |
|
Tony Torralba
|
e78e71c875
|
List Squirrel builders explicitly
|
2024-03-05 16:05:22 +01:00 |
|
Ian Lynagh
|
edd383afc1
|
Merge pull request #15803 from igfoo/igfoo/del1
Kotlin 2: Accept more location changes
|
2024-03-05 14:41:05 +00:00 |
|
Tony Torralba
|
a264ea23c6
|
Go: Add SQLi sinks for Squirrel
|
2024-03-05 15:35:34 +01:00 |
|
Tamas Vajk
|
2b99b83857
|
C#: Add package source error count to DB
|
2024-03-05 15:32:08 +01:00 |
|
Owen Mansel-Chan
|
8e43c5c683
|
Merge pull request #15811 from owen-mc/go/limit-password-heuristics
Go: Only check strings of length <= 100 for dummy password with <= 2 unique characters
|
2024-03-05 13:42:26 +00:00 |
|
Owen Mansel-Chan
|
4dde1fb117
|
Only check strings of length <= 100 for dummy password with <= 2 unique characters
|
2024-03-05 11:45:17 +00:00 |
|
Tom Hvitved
|
bd7b2c4cc6
|
Update expected output
|
2024-03-05 10:44:13 +01:00 |
|
Tom Hvitved
|
d5c34264ad
|
Data flow: Prune call-context sensitivity relations
|
2024-03-05 10:44:12 +01:00 |
|
Tom Hvitved
|
5be75e91fc
|
Merge pull request #15796 from hvitved/csharp/variable-capture-follow-up
C#: Variable capture follow-up
|
2024-03-05 09:58:23 +01:00 |
|
Tony Torralba
|
a78e04eb34
|
Merge pull request #15795 from atorralba/atorralba/go/macaron-sources
Go: Add Macaron sources
|
2024-03-05 09:08:58 +01:00 |
|
Tony Torralba
|
05aaf2bb67
|
Merge pull request #15805 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2024-03-05 08:53:41 +01:00 |
|
github-actions[bot]
|
84f3771cdd
|
Add changed framework coverage reports
|
2024-03-05 00:15:54 +00:00 |
|
Robert Marsh
|
28e1e3a13a
|
C++: remove skeleton for IR destructors on expressions
|
2024-03-04 21:54:18 +00:00 |
|
Ian Lynagh
|
6e09dcc16a
|
Kotlin 2: Accept more loc changes in exprs
|
2024-03-04 19:06:32 +00:00 |
|
Ian Lynagh
|
22e6c676c3
|
Kotlin 2: Accept loc change for a string literal in expr test
|
2024-03-04 19:02:40 +00:00 |
|
Ian Lynagh
|
b7d2e54bbd
|
Kotlin 2: exprs test: Accept loc change for ClassWithDelegate
|
2024-03-04 19:00:40 +00:00 |
|
Ian Lynagh
|
00ab1a3129
|
Kotlin 2: exprs test: Accept loc change for MyClass
|
2024-03-04 19:00:38 +00:00 |
|
Tom Hvitved
|
a92e394a7c
|
C#: Variable capture follow-up
|
2024-03-04 19:36:30 +01:00 |
|
Tony Torralba
|
7286f56718
|
Change tests to inline expectations
|
2024-03-04 17:29:12 +01:00 |
|
Owen Mansel-Chan
|
331f308997
|
Merge pull request #13692 from Marcono1234/patch-1
Mention needed imports at top of "Analyzing data flow in Java"
|
2024-03-04 15:32:18 +00:00 |
|
Owen Mansel-Chan
|
e124b07611
|
Merge branch 'main' into patch-1
|
2024-03-04 14:44:23 +00:00 |
|
Owen Mansel-Chan
|
dcc2b2c50d
|
Merge pull request #15057 from aydinnyunus/main
Web Cache Deception Vulnerability on Go Frameworks
|
2024-03-04 14:36:39 +00:00 |
|
Owen Mansel-Chan
|
c0974934bc
|
Fix test expectations again
|
2024-03-04 14:05:04 +00:00 |
|
Owen Mansel-Chan
|
39a802fb98
|
Add new columns to test expectations
|
2024-03-04 13:45:54 +00:00 |
|
yoff
|
00e77a3ddb
|
Merge pull request #15720 from RasmusWL/nosql-precision
Python: Add precision to NoSQL query
|
2024-03-04 14:44:46 +01:00 |
|
yoff
|
569bb991d4
|
Merge pull request #15775 from RasmusWL/scope-consistency
Python: Add consistency check for `PhaseDependentFlow`
|
2024-03-04 14:43:13 +01:00 |
|