Erik Krogh Kristensen
|
b9a7c563d1
|
fix typo in change note
Co-authored-by: Asger F <asgerf@github.com>
|
2022-04-21 09:09:56 +02:00 |
|
Asger Feldthaus
|
c6e66edb97
|
JS: Change note
|
2022-04-21 08:32:01 +02:00 |
|
Harry Maclean
|
3ea6ba5398
|
Merge pull request #8618 from hmac/hmac/qlhelp-comment-workflow
Update existing qhelp comment, if it exists
|
2022-04-21 14:01:17 +12:00 |
|
Erik Krogh Kristensen
|
9927a82520
|
Merge pull request #8789 from erik-krogh/apiIpaBranches
JS/PY: mention newtype constructors in API graph label classes
|
2022-04-20 23:39:46 +02:00 |
|
Erik Krogh Kristensen
|
7e73ecceab
|
add change-note
|
2022-04-20 23:31:42 +02:00 |
|
Porcupiney Hairs
|
06edb3f3a1
|
fix formatting issues
|
2022-04-21 00:23:49 +05:30 |
|
Erik Krogh Kristensen
|
ff5b873557
|
Merge pull request #8773 from erik-krogh/exhaustion
JS: promote `js/resource-exhaustion` out of experimental
|
2022-04-20 19:33:42 +02:00 |
|
Erik Krogh Kristensen
|
9c5f3e9406
|
remove leftover debug comments
|
2022-04-20 18:42:46 +02:00 |
|
Erik Krogh Kristensen
|
aec8413487
|
PY: mention newtype constructors in API graph label classes
|
2022-04-20 18:38:44 +02:00 |
|
Erik Krogh Kristensen
|
ef51b46795
|
JS: mention newtype constructors in API graph label classes
|
2022-04-20 18:37:19 +02:00 |
|
Erik Krogh Kristensen
|
8bd975a6ec
|
Merge pull request #8785 from hvitved/ruby/api-graph-labels
Ruby: Mention `newtype` constructors in API graph label classes
|
2022-04-20 18:32:09 +02:00 |
|
Erik Krogh Kristensen
|
06394c8dc6
|
move storedXss sources to the Customizations file
|
2022-04-20 18:17:49 +02:00 |
|
Erik Krogh Kristensen
|
58fcdbc406
|
QL: remove some benign results from ql/abstract-class-import
|
2022-04-20 18:17:08 +02:00 |
|
Erik Krogh Kristensen
|
81ce8ac715
|
ATM: fix compiler warnings about unused variables
|
2022-04-20 18:10:59 +02:00 |
|
Erik Krogh Kristensen
|
4bc36d82f6
|
update expected output for ATM
|
2022-04-20 18:10:56 +02:00 |
|
Erik Krogh Kristensen
|
c1c66a0200
|
refactor CountAlertAndEndpoints to not refer to deprecated files
|
2022-04-20 18:10:56 +02:00 |
|
Erik Krogh Kristensen
|
c5f7df17ee
|
add .actual files to .gitignore for ATM tests
|
2022-04-20 18:10:56 +02:00 |
|
Erik Krogh Kristensen
|
1c5d59f885
|
fix an instance of ql/acronyms-should-be-pascal-case
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
ea6b68fc59
|
add missing qldoc
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
12e60c7a06
|
move TypeTestGuard to the Query.qll file
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
b1bad271d5
|
only activate the PrefixString label in Query.qll files
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
8a5b1668f9
|
move initialization of sanitizer-guards to Query.qll files
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
73dbe44824
|
remove dead import
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
8d3bd9d7cd
|
move the ExceptionXss sources into the Customizations file
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
25708c5091
|
move the XssThroughDom sources into the Customizations file
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
ad14bbae90
|
create a customizations file for StoredXss
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
162a4992a5
|
move the ReflectedXss sources/sinks into the Customizations file
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
173e1d0262
|
move the DomBasedXss sources/sinks into the Customizations file
|
2022-04-20 18:10:53 +02:00 |
|
Erik Krogh Kristensen
|
9631b68de9
|
move LocalUrlSanitizingGuard out of the customizations file
|
2022-04-20 18:10:52 +02:00 |
|
Arthur Baars
|
040dd09c5a
|
Merge pull request #8718 from github/sj/codeowners-pms
Update CODEOWNERS for documentation and license changes
|
2022-04-20 18:08:43 +02:00 |
|
Arthur Baars
|
98df392b4f
|
Merge pull request #8719 from github/sj/update-readme-license-explanation
Update README to clarify license explanation
|
2022-04-20 18:07:00 +02:00 |
|
AlexDenisov
|
a187939424
|
Merge pull request #8784 from AlexDenisov/alexdenisov/swift-package-test-sdk
Swift: package test SDK
|
2022-04-20 16:07:40 +02:00 |
|
Bas van Schaik
|
732a2c32a8
|
Update README.md
|
2022-04-20 15:03:49 +01:00 |
|
${sleep,7}
|
b5734ed6a2
|
Merge branch 'main' into jty/python/emailInjection
|
2022-04-20 09:50:08 -04:00 |
|
Anders Schack-Mulligen
|
677c436e99
|
Merge pull request #8703 from aschackmull/dataflow/revert-state-in-out-barriers
Dataflow: Revert support for flow-state based in-/out-barriers
|
2022-04-20 14:54:02 +02:00 |
|
Tom Hvitved
|
ea229d361c
|
Sync files
|
2022-04-20 13:55:18 +02:00 |
|
Tom Hvitved
|
b4542c58c2
|
Ruby: Implement Argument[any] and Argument[n..]
|
2022-04-20 13:55:18 +02:00 |
|
Rasmus Wriedt Larsen
|
bb6969a175
|
Merge branch 'main' into promote-xxe
|
2022-04-20 13:42:02 +02:00 |
|
Tom Hvitved
|
501b03149f
|
Ruby: Mention newtype constructors in API graph label classes
|
2022-04-20 13:37:55 +02:00 |
|
Nick Rolfe
|
9b2a98326c
|
Ruby: update use of PostUpdateNode now that it's public
|
2022-04-20 12:08:41 +01:00 |
|
Nick Rolfe
|
9b6e610e24
|
Merge remote-tracking branch 'origin/main' into nickrolfe/incomplete_sanitization
|
2022-04-20 12:05:22 +01:00 |
|
Nick Rolfe
|
3d109a4051
|
Merge pull request #8777 from github/nickrolfe/post_update_node
Ruby: make PostUpdateNode public
|
2022-04-20 12:04:37 +01:00 |
|
Alex Denisov
|
682c910d49
|
Swift: package test SDK
|
2022-04-20 12:35:19 +02:00 |
|
Mathias Vorreiter Pedersen
|
3388196c27
|
Merge branch 'main' into smaller-join-in-get-root-cause
|
2022-04-20 11:16:00 +01:00 |
|
Rasmus Wriedt Larsen
|
888a38c060
|
Python: Add change-note
|
2022-04-20 11:46:09 +02:00 |
|
Rasmus Wriedt Larsen
|
d70f247001
|
Python: More private import python
|
2022-04-20 11:42:13 +02:00 |
|
Rasmus Wriedt Larsen
|
084c8eb22e
|
Python: Don't re-export python under DataFlow::
|
2022-04-20 11:42:10 +02:00 |
|
Rasmus Wriedt Larsen
|
5dbbd17bb2
|
Python: Add test to ensure we keep DataFlow imports clean
Currently we're not in a good state :(
|
2022-04-20 11:41:01 +02:00 |
|
Asger F
|
e60475618d
|
Merge pull request #8728 from asgerf/ql/library-coverage
QL: Add facilities for data flow
|
2022-04-20 11:40:18 +02:00 |
|
Nick Rolfe
|
f1b8af1db9
|
Ruby: rename PostUpdateNode::Range to PostUpdateNodeImpl
|
2022-04-20 10:35:40 +01:00 |
|