Michael Nebel
|
7cef859253
|
C#: Add sample code file that calls both supported and unsupported library code with respect to flow summaries.
|
2022-03-29 14:49:37 +02:00 |
|
Michael Nebel
|
918a6c7425
|
C#: Telemetry query for measuring (unsupport dataflow) library usage.
|
2022-03-29 14:49:37 +02:00 |
|
Michael Nebel
|
c023808657
|
C#: Telemetry query for measuring all library usage.
|
2022-03-29 14:49:37 +02:00 |
|
Michael Nebel
|
0650c6d395
|
C#: Add initial port of the java implementation of ExternalAPI.qll.
|
2022-03-29 14:49:37 +02:00 |
|
Michael Nebel
|
e9070b010b
|
C#: Add getCall predicate to ArgumentNode.
|
2022-03-29 14:49:37 +02:00 |
|
Michael Nebel
|
c552ab4138
|
Java: Remove duplicate import statement in ExternalAPI.qll.
|
2022-03-29 14:49:37 +02:00 |
|
Michael Nebel
|
c3ac5aba57
|
Merge pull request #8482 from michaelnebel/csharp/capturesourcesink-models
C#: Capture[Source|Sink]Models utility.
|
2022-03-29 14:43:10 +02:00 |
|
yoff
|
3416f074e8
|
Update python/ql/src/Security/CWE-352/CSRFProtectionDisabled.ql
Explain why `TestScope` is not used.
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2022-03-29 13:59:04 +02:00 |
|
Dave Bartolomeo
|
c9f79047b3
|
Improve QLDoc
|
2022-03-29 07:27:45 -04:00 |
|
Dave Bartolomeo
|
01c747ccb7
|
Remove debugging code
|
2022-03-29 07:14:51 -04:00 |
|
Dave Bartolomeo
|
820beed085
|
Remove Java portion (moved to separate PR)
|
2022-03-29 07:09:33 -04:00 |
|
Tony Torralba
|
e564481e9f
|
Organize imports
|
2022-03-29 11:38:24 +02:00 |
|
Asger F
|
68575f3655
|
Merge pull request #8579 from asgerf/js/literal-csv-rows
JS: write all CSV rows as literals
|
2022-03-29 11:13:19 +02:00 |
|
Michael Nebel
|
8e60073d5a
|
Java: Remove dataflow imports for java.qll.
|
2022-03-29 11:07:58 +02:00 |
|
Michael Nebel
|
f734edf8ff
|
C#/Java: Minor refactor and re-arranging of code to align the CaptureModel specific implementations.
|
2022-03-29 11:07:58 +02:00 |
|
Michael Nebel
|
dd267b353a
|
C#: Move isRelevantMemberAccess out of PropagateToSinkConfigurationSpecific.
|
2022-03-29 11:07:58 +02:00 |
|
Michael Nebel
|
3933dfa78e
|
Java: Make imports private and add parts of the dataflow library to java.qll (same as in C#).
|
2022-03-29 11:07:58 +02:00 |
|
Michael Nebel
|
ad90c55bc6
|
C#: Improve encapsulation in CaptureModelsSpecific.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
26d5eb64b3
|
C#/Java: Initial merge ModelGeneratorUtils into CaptureModels.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
9b7691a5fc
|
C#/Java: Address comments on re-exposing functionality.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
1710b66003
|
C#/Java: Some minor variable name changes and QL Doc updates.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
4298024cd6
|
C#: Refactor isRelevantForModels.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
5970fd9904
|
C#: Also include property reads in possible new sink discovery. Only include public fields and properties.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
8a65efbae4
|
C#/Java: Add isRelevantSinkKind predicate with language specific implementation.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
0009d781d7
|
Java: Make most imports private.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
1c7d764d54
|
C#: Make most module imports private.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
ad27a5a1a6
|
C#/Java: Add some more QL Doc to the CaptureModels[Specific] implementation.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
62dcbff67f
|
C#: Update sync files config.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
5d62c48890
|
C#/Java: Move libraries to internal folder as these are for internal use only.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
3d2ce57c9e
|
Java: Collapse all the specific code for summary, source and sink models into a single file.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
43c9f9d7bb
|
C#: Collapse all the specific code for summary, source and sink models into a single file.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
852d8a2770
|
Java: Collapse all the shared code for summary, source and sink models into a single file.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
4f2227f206
|
C#: Collapse all the shared code for summary, source and sink models into a single file.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
79fd2e6a40
|
C#/Java: Make configurations private and sprinkle some QL Doc.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
6194d5cf63
|
C#: Add test for CaptureSinkModel query.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
5babb0e66a
|
C#: Update stubs to include one more known sink method.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
858508fa33
|
C#: Make sure that language independent parts of CaptureSinkModels is in sync.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
db21a6a0f3
|
C#: Add CaptureSummaryModels query.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
fb2a7dfb48
|
Java: Refactor CaptureSinkModels into language specific and generic part.
|
2022-03-29 11:07:57 +02:00 |
|
Michael Nebel
|
cc5fbbb7c5
|
Java: Minor cleanup in CaptureSinkModels.
|
2022-03-29 11:07:56 +02:00 |
|
Michael Nebel
|
cc4e26466f
|
C#: Add test case for CaptureSummaryModels query.
|
2022-03-29 11:07:56 +02:00 |
|
Michael Nebel
|
b4efd0e154
|
C#: Make sure that the shared CaptureSummaryModel is in sync.
|
2022-03-29 11:07:56 +02:00 |
|
Michael Nebel
|
4ae5dc323f
|
C#: Add CaptureSourceModel query.
|
2022-03-29 11:07:56 +02:00 |
|
Michael Nebel
|
45234b1631
|
Java: Refactor CaptureSourceModel to enable re-use.
|
2022-03-29 11:07:56 +02:00 |
|
Michael Nebel
|
f00837578b
|
Java: isPublic and fromSource check as this is already ensured by the TargetApi characteristic predicate.
|
2022-03-29 11:07:56 +02:00 |
|
Michael Nebel
|
f42ed1e3ad
|
Java: Cleanup imports in CaptureSourceModels.
|
2022-03-29 11:07:56 +02:00 |
|
Geoffrey White
|
b94ade3bdd
|
C++: Improve the regexps.
|
2022-03-29 10:03:58 +01:00 |
|
Erik Krogh Kristensen
|
ae3b32409a
|
update expected output of tests that relied on API::Node::toString()
|
2022-03-29 10:59:08 +02:00 |
|
Geoffrey White
|
393819837c
|
C++: Convert to regexp.
|
2022-03-29 09:33:16 +01:00 |
|
Tom Hvitved
|
f429dafb09
|
Address review comments
|
2022-03-29 10:23:59 +02:00 |
|