Michael Nebel
|
d76b069bc5
|
C#: Manual changes to stubs to ensure compilation.
|
2022-08-09 13:08:34 +02:00 |
|
Michael Nebel
|
73b6697ea6
|
C#: Add ServiceStack 6.2.0 and friends.
|
2022-08-09 13:08:17 +02:00 |
|
Chris Smowton
|
1c6642f3fb
|
Format QL
|
2022-08-09 11:50:54 +01:00 |
|
Chris Smowton
|
80f5b977d6
|
Use sealed classes released version
|
2022-08-09 11:50:54 +01:00 |
|
yo-h
|
c46b54b9c2
|
Java 17: exclude non-source locations in some tests
|
2022-08-09 11:50:54 +01:00 |
|
yo-h
|
0bf7e075e5
|
Java 17: adjust expected test output
|
2022-08-09 11:50:54 +01:00 |
|
yo-h
|
27b699df33
|
Java: adjust test options for JDK 17 upgrade
|
2022-08-09 11:50:54 +01:00 |
|
Erik Krogh Kristensen
|
add9e9dac4
|
Merge pull request #9548 from erik-krogh/exports
JS: support the "exports" property in a package.json
|
2022-08-09 12:16:12 +02:00 |
|
Tamás Vajk
|
82a56608ef
|
Merge pull request #9992 from tamasvajk/fix/fetch-codeql-path
Fix path of `fetch-codeql`
|
2022-08-09 10:57:11 +02:00 |
|
Geoffrey White
|
db8a3107b3
|
Merge pull request #9089 from ihsinme/ihsinme-patch-87
CPP: Add query for CWE-125 Out-of-bounds Read with different interpretation of the string when use mbtowc
|
2022-08-09 09:31:32 +01:00 |
|
Tom Hvitved
|
975edac34e
|
Merge pull request #9969 from hvitved/ruby/kwargs-missing-flow
Ruby: Support more flow through keyword arguments
|
2022-08-09 09:59:57 +02:00 |
|
Michael Nebel
|
b90a404658
|
Merge pull request #9636 from michaelnebel/csharp/sinkmodelcsv
C#: Convert Sinks to CSV format for SymmetricAlgorithm.
|
2022-08-09 09:05:12 +02:00 |
|
Tamas Vajk
|
2cab1ed076
|
Fix path of fetch-codeql
|
2022-08-09 07:59:25 +02:00 |
|
Tom Hvitved
|
dd465e739b
|
Code review suggestion
|
2022-08-09 07:46:27 +02:00 |
|
Tamas Vajk
|
36c913061c
|
C#: Fix dataflow for default constructors
|
2022-08-09 07:46:27 +02:00 |
|
Tamas Vajk
|
1a92fc90e0
|
C#: Add test to demonstrate missing dataflow for default constructors
|
2022-08-09 07:46:27 +02:00 |
|
Harry Maclean
|
22d7b046ab
|
Ruby: Fix <<
|
2022-08-09 15:08:17 +12:00 |
|
Harry Maclean
|
e3115b5ed7
|
Ruby: Add test for other=
|
2022-08-09 15:08:17 +12:00 |
|
Harry Maclean
|
831f722402
|
Ruby: Make room for new test
|
2022-08-09 15:08:17 +12:00 |
|
Harry Maclean
|
58b628b6d1
|
Ruby: Add change note
|
2022-08-09 15:08:17 +12:00 |
|
Harry Maclean
|
dc853d9728
|
Ruby: Model ActiveRecord associations
|
2022-08-09 15:08:17 +12:00 |
|
Shyam Mehta
|
af92fc389b
|
Update PartialPathTraversalFromRemote.qhelp
|
2022-08-08 17:37:57 -04:00 |
|
Shyam Mehta
|
50b4df52f0
|
Fixed precision labels
|
2022-08-08 17:36:04 -04:00 |
|
Shyam Mehta
|
9d3e8ec475
|
Update PartialPathTraversalFromRemote.qhelp
|
2022-08-08 17:35:36 -04:00 |
|
smehta23
|
4f1bc3022c
|
Update java/ql/src/Security/CWE/CWE-023/PartialPathTraversalFromRemote.ql
Co-authored-by: Chris Smowton <smowton@github.com>
|
2022-08-08 17:09:43 -04:00 |
|
ihsinme
|
4fdf4b23bd
|
Update DangerousWorksWithMultibyteOrWideCharacters.ql
|
2022-08-08 18:46:39 +03:00 |
|
ihsinme
|
212b1031b2
|
Update DangerousWorksWithMultibyteOrWideCharacters.qhelp
|
2022-08-08 18:42:54 +03:00 |
|
ihsinme
|
7cbf79b144
|
Rename DangerousUseMbtowc.ql to DangerousWorksWithMultibyteOrWideCharacters.ql
|
2022-08-08 18:39:41 +03:00 |
|
ihsinme
|
9b5154f878
|
Update and rename DangerousUseMbtowc.qlref to DangerousWorksWithMultibyteOrWideCharacters.qlref
|
2022-08-08 18:39:10 +03:00 |
|
ihsinme
|
bce395f201
|
Rename DangerousUseMbtowc.expected to DangerousWorksWithMultibyteOrWideCharacters.expected
|
2022-08-08 18:38:24 +03:00 |
|
ihsinme
|
ef04b8f5b3
|
Rename DangerousUseMbtowc.qhelp to DangerousWorksWithMultibyteOrWideCharacters.qhelp
|
2022-08-08 18:37:15 +03:00 |
|
ihsinme
|
5ee499389e
|
Rename DangerousUseMbtowc.cpp to DangerousWorksWithMultibyteOrWideCharacters.cpp
|
2022-08-08 18:36:53 +03:00 |
|
ihsinme
|
02bea35da2
|
Update DangerousUseMbtowc.qhelp
|
2022-08-08 18:35:25 +03:00 |
|
Asger F
|
fdcb1fa115
|
Merge pull request #9928 from asgerf/js/source-node-type
JS: Simplify type hierarchy for SourceNode
|
2022-08-08 16:53:20 +02:00 |
|
Esben Sparre Andreasen
|
ab3d365ddb
|
Merge pull request #9535 from github/js-array-filter-taint-step
Tests for rebased 7010
|
2022-08-08 14:31:22 +02:00 |
|
Tom Hvitved
|
9268437a58
|
Ruby: Generalize SynthHashSplatParameterNode to also work for synthesized methods
|
2022-08-08 14:05:06 +02:00 |
|
Michael Nebel
|
6febbc5966
|
C#: Update .NET Core and ASP.NET Core.
|
2022-08-08 13:29:20 +02:00 |
|
Ian Lynagh
|
b5d6258e54
|
Merge pull request #9809 from igfoo/igfoo/fakeLabel
Kotlin: Remove the last uses of fakeLabel
|
2022-08-08 11:54:53 +01:00 |
|
yoff
|
20febb6edd
|
Merge pull request #9567 from RasmusWL/typetracker-decorators
Python: allow class decorators in `.getASubclass()`
|
2022-08-08 12:42:27 +02:00 |
|
Esben Sparre Andreasen
|
da44340334
|
formatting
|
2022-08-08 12:22:41 +02:00 |
|
Edoardo Pirovano
|
d3ec8a8ec3
|
Merge pull request #9949 from github/edoardo/trap-cache-config
JS: Change how TRAP cache is configured
|
2022-08-08 11:19:31 +01:00 |
|
Rasmus Wriedt Larsen
|
f89b32183f
|
Merge branch 'main' into typetracker-decorators
|
2022-08-08 11:52:09 +02:00 |
|
Edoardo Pirovano
|
5c3d39579a
|
JS: Change how TRAP cache is configured
|
2022-08-08 10:25:50 +01:00 |
|
Esben Sparre Andreasen
|
a3cf81d419
|
js: add filter taint test (post rebase conflicts)
|
2022-08-08 11:00:11 +02:00 |
|
Evgenii Protsenko
|
50264547bf
|
make array taint-step better
|
2022-08-08 11:00:11 +02:00 |
|
Anders Schack-Mulligen
|
aa3655678e
|
Merge pull request #9823 from aschackmull/dataflow/stage-module
Dataflow: Replace stage duplication with parameterised modules.
|
2022-08-08 10:56:32 +02:00 |
|
Tom Hvitved
|
d16a154f9e
|
Address review comment
|
2022-08-08 10:45:55 +02:00 |
|
Michael Nebel
|
cebd49af9d
|
Merge pull request #9968 from michaelnebel/csharp/aspreviewcomment
C#: Simplification of AspNetCoreRemoteFlowSourceMember.
|
2022-08-08 09:44:02 +02:00 |
|
Tony Torralba
|
98b930cd67
|
Accept test changes in experimental query after AsyncTask improvements
|
2022-08-08 09:23:12 +02:00 |
|
Tom Hvitved
|
27e89cbbb1
|
Merge pull request #9980 from hvitved/csharp/lua-tracer-improvements
C#: Also disable shared compilation in the tracer for `dotnet msbuild`
|
2022-08-08 08:57:52 +02:00 |
|