erik-krogh
|
f4e928eec4
|
Merge branch 'main' into ql-last-msg
|
2022-10-11 10:44:20 +02:00 |
|
erik-krogh
|
9a9d2a6fe1
|
Merge branch 'main' into rb-last-msg
|
2022-10-11 10:43:39 +02:00 |
|
Josh Soref
|
704aba8c1c
|
spelling: necessitates
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 03:59:17 -04:00 |
|
Josh Soref
|
22141e378e
|
spelling: necessary
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 03:59:17 -04:00 |
|
Josh Soref
|
4e220330a7
|
spelling: interface
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 03:59:17 -04:00 |
|
Josh Soref
|
8f7e76f0cb
|
spelling: initialization
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 03:59:08 -04:00 |
|
erik-krogh
|
9fe18e5d73
|
changes based on review
|
2022-10-11 09:30:18 +02:00 |
|
erik-krogh
|
186205bd4b
|
add a test for explicit shell invocations using Kernel.open
|
2022-10-11 09:23:29 +02:00 |
|
erik-krogh
|
de3b15ebe9
|
add a query flagging uses of Kernel.open that are not with a constant string
|
2022-10-11 09:23:29 +02:00 |
|
erik-krogh
|
708f6b51f3
|
move cwe-078 tests into subfolders
|
2022-10-11 09:23:29 +02:00 |
|
Asger F
|
b6e07c0cd5
|
Ruby: block API graph nodes from tracking through self-argument passing
|
2022-10-11 09:03:52 +02:00 |
|
Asger F
|
125761755a
|
Ruby: do not generate API graph edges from Attribute contents
Models should use Method[x] edges, not attribute edges
|
2022-10-11 09:03:52 +02:00 |
|
Asger F
|
6daa1c432b
|
Ruby: update test output
|
2022-10-11 09:03:51 +02:00 |
|
Asger F
|
38a3476d37
|
Ruby: add local field step to type tracking
fixup local field steps
|
2022-10-11 09:03:51 +02:00 |
|
Asger F
|
d55925d8d4
|
Ruby: support splat type-tracking step
|
2022-10-11 09:03:51 +02:00 |
|
Josh Soref
|
0a4c724b69
|
spelling: implementation
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
f06c15b86a
|
spelling: genuinely
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
29da681bbb
|
spelling: functions
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
86ee8c2d00
|
spelling: first
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
b5bed9cbf5
|
spelling: explicitly
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
e8754967ea
|
spelling: explaining
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
479a4fb4a2
|
spelling: expectations
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
cbea5ec40c
|
spelling: executables
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
3b9546f02e
|
spelling: deserialization
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
c08cfe23e0
|
spelling: dependencies
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
3e6477f878
|
spelling: currently
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
e6998d40c3
|
spelling: cryptographically
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
88408fbd59
|
spelling: ciphertext
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
9b372f3db4
|
spelling: characters
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
0581f2fe1c
|
spelling: can
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
879158a653
|
spelling: behavior
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
5755159f08
|
spelling: authentication
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:36 -04:00 |
|
Josh Soref
|
6db36616cd
|
spelling: arbitrary
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:35 -04:00 |
|
Josh Soref
|
c2a0dbe715
|
spelling: application
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:35 -04:00 |
|
Josh Soref
|
3358c5f664
|
spelling: apparent
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:35 -04:00 |
|
Josh Soref
|
b95af76dab
|
spelling: although
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:35 -04:00 |
|
Josh Soref
|
b1052992fe
|
spelling: against
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:35 -04:00 |
|
Josh Soref
|
21caa4b03f
|
spelling: across
Signed-off-by: Josh Soref <2119212+jsoref@users.noreply.github.com>
|
2022-10-11 00:23:35 -04:00 |
|
Tom Hvitved
|
6c2eee3eb8
|
Ruby: Restrict regexp taint flow to String summaries
|
2022-10-10 20:58:41 +02:00 |
|
Edward Minnix III
|
b6270ebe52
|
Apply suggestions from documentation review
Co-authored-by: Felicity Chapman <felicitymay@github.com>
|
2022-10-10 14:57:14 -04:00 |
|
Edward Minnix III
|
b94b78115e
|
Style fix.
Co-authored-by: Felicity Chapman <felicitymay@github.com>
|
2022-10-10 14:52:17 -04:00 |
|
Ian Lynagh
|
591844f680
|
Kotlin: Add a numlines test
|
2022-10-10 19:04:11 +01:00 |
|
Ian Lynagh
|
bca2586903
|
Kotlin: Populate numfiles
|
2022-10-10 19:00:05 +01:00 |
|
Nora Dimitrijević
|
b7ad287cb1
|
Swift: rename stub parameters to match docs.
|
2022-10-10 18:46:39 +02:00 |
|
Geoffrey White
|
4258147edf
|
Swift: Test SQL injection via the SQLite.swift library.
|
2022-10-10 17:40:22 +01:00 |
|
Geoffrey White
|
964c92418c
|
Swift: Test SQL injection via the C API.
|
2022-10-10 17:40:22 +01:00 |
|
Geoffrey White
|
bcab9d8e7c
|
Swift: Add framework for SQL Injection query.
|
2022-10-10 17:25:08 +01:00 |
|
Asger F
|
9bbbece8a7
|
Merge pull request #10670 from tyage/property-stringify
JS: Improve detection of XSS when JSON.stringify()
|
2022-10-10 18:16:09 +02:00 |
|
Tamas Vajk
|
f2e2e3bc1d
|
Kotlin: extract protected modifier from java class files
|
2022-10-10 18:02:21 +02:00 |
|
Tamas Vajk
|
15aab711c7
|
Kotlin: Add test showing missing java modifier
|
2022-10-10 18:01:38 +02:00 |
|