Mathias Vorreiter Pedersen
|
e71fbb1def
|
Merge pull request #11541 from MathiasVP/add-node0
C++: Introduce a pre-SSA `DataFlow::Node` class
|
2022-12-06 13:28:39 +00:00 |
|
Michael Nebel
|
8e4190d84a
|
Merge pull request #11516 from michaelnebel/java/externalflowcleanup
Java: Cleanup imports of `ExternalFlow`
|
2022-12-06 14:26:39 +01:00 |
|
erik-krogh
|
8f0c0f3c17
|
add support for super calls to Kernel
|
2022-12-06 14:25:51 +01:00 |
|
erik-krogh
|
0e9cd1e4b5
|
factor out methodName to a field in KernelMethodCall
|
2022-12-06 14:23:46 +01:00 |
|
erik-krogh
|
e24f041661
|
drive-by: use instanceof KernelMethodCall such that override getAnArgument cannot be mistaken for a method in CallNode
|
2022-12-06 14:21:48 +01:00 |
|
erik-krogh
|
5849b2c98a
|
drive-by: simplify the imports in PathInjection.ql
|
2022-12-06 14:09:39 +01:00 |
|
erik-krogh
|
66946ebf6a
|
add Kernel methods as sinks to path-injection
|
2022-12-06 14:09:15 +01:00 |
|
Anders Schack-Mulligen
|
b579e2e7ed
|
Merge pull request #11493 from aschackmull/java/scc-equivrel
Java: Replace ad-hoc SCC reduction with union-find.
|
2022-12-06 14:02:46 +01:00 |
|
ALJI Mohamed
|
a5849eb9b0
|
Improved the additional taint step using InstanceSource
|
2022-12-06 14:00:08 +01:00 |
|
Michael Nebel
|
27efb0d843
|
C#: Rename -> for .
|
2022-12-06 13:53:50 +01:00 |
|
Erik Krogh Kristensen
|
be168901d6
|
Merge pull request #11085 from dbartol/dbartol/ql-for-ql-latest
Use latest released bundle for QL-for-QL
|
2022-12-06 12:43:53 +01:00 |
|
retanoj
|
2bbd37f9ab
|
change code snippet to or condition
|
2022-12-06 19:27:29 +08:00 |
|
Michael Nebel
|
29ccac8e93
|
C#: Address review comments.
|
2022-12-06 12:05:48 +01:00 |
|
Mathias Vorreiter Pedersen
|
3eea3b2f45
|
Merge pull request #11446 from atorralba/atorralba/swift/path-injection
Swift: Add path injection query
|
2022-12-06 11:03:26 +00:00 |
|
Michael Nebel
|
6b35098fb7
|
C#: Replace more uses of getQualifiedName/0.
|
2022-12-06 11:59:13 +01:00 |
|
Michael Nebel
|
0a3295ef3f
|
C#: Address review comments.
|
2022-12-06 11:59:13 +01:00 |
|
Michael Nebel
|
ae4f4d6df4
|
C#: Add change note about deprecation of hasQualifiedName/1.
|
2022-12-06 11:59:13 +01:00 |
|
Michael Nebel
|
f7a1a4a9b7
|
C#: Add some missing this qualifiers.
|
2022-12-06 11:59:13 +01:00 |
|
Michael Nebel
|
38e906f854
|
C#: Use hasQualifiedName instead of getQualifiedName.
|
2022-12-06 11:59:13 +01:00 |
|
Michael Nebel
|
c24302bec2
|
C#: Replace all uses of the deprecated hasQualifiedName/1 predicate.
|
2022-12-06 11:59:12 +01:00 |
|
Michael Nebel
|
315a3a5ed3
|
C#: Add hasQualifiedName/3 including overrides where relevant and re-write some of the existing hasQualifiedName/2 predicates.
|
2022-12-06 11:59:12 +01:00 |
|
Michael Nebel
|
38565407c5
|
C#: Add small module with relevant printing predicates.
|
2022-12-06 11:59:12 +01:00 |
|
Michael Nebel
|
86c021ef7e
|
C#: Deprecate hasQualifiedName/1.
|
2022-12-06 11:59:12 +01:00 |
|
retanoj
|
de652e1e27
|
expected
|
2022-12-06 18:09:48 +08:00 |
|
Chris Smowton
|
3b5b121aeb
|
Merge pull request #11553 from smowton/smowton/fix/kotlin-synthetic-noarg-constructor
Kotlin: Extract a no-arg constuctor whenever a Kotlin class has default values for all parameters
|
2022-12-06 10:07:31 +00:00 |
|
retanoj
|
fb8559f03a
|
tiny fix function name
|
2022-12-06 18:03:00 +08:00 |
|
Anders Schack-Mulligen
|
f0ac59be25
|
Merge pull request #11521 from aschackmull/shared/typetracking
Shared: Add a qlpack with a parameterized module defining type-trackers.
|
2022-12-06 10:56:44 +01:00 |
|
Anders Schack-Mulligen
|
1b77f50fd7
|
Shared: Address review comments.
|
2022-12-06 10:42:16 +01:00 |
|
Michael Nebel
|
4e93429026
|
Merge pull request #11577 from michaelnebel/java/enablemodeldifferenceworkflow
Java: Add Model Difference workflow on model generator changes.
|
2022-12-06 10:35:52 +01:00 |
|
retanoj
|
82d0551215
|
Merge branch 'main' into MybatisSqli
|
2022-12-06 17:19:30 +08:00 |
|
retanoj
|
d2140eb4b1
|
MyBatisAnnotationSqlInjection no @Param case
|
2022-12-06 17:07:49 +08:00 |
|
Michael Nebel
|
204766b967
|
Java: Adjust generated model paths in Model difference workflow.
|
2022-12-06 09:53:39 +01:00 |
|
Tom Hvitved
|
b5e2e1e469
|
Merge pull request #11564 from hvitved/dataflow/parameter-position-consistency-checks
Data flow: Add consistency checks for parameter positions
|
2022-12-06 09:33:36 +01:00 |
|
Michael Nebel
|
6fa2193602
|
Java: Add Model Difference workflow on model generator changes.
|
2022-12-06 09:26:09 +01:00 |
|
Michael Nebel
|
cd5c0bec33
|
Merge pull request #11527 from michaelnebel/java/regeneratemodels
Java/C#: Delete old model generator scripts and update Java model re-generator script.
|
2022-12-06 09:24:13 +01:00 |
|
Jeroen Ketema
|
995efef5da
|
C++: Add explanatory comment to hasFilteredFlowPath
|
2022-12-06 09:03:21 +01:00 |
|
Jeroen Ketema
|
5637d573c1
|
C++: Add test case that is no longer detected after latest changes
|
2022-12-06 08:31:22 +01:00 |
|
Tom Hvitved
|
b171dc9b7b
|
Merge pull request #11477 from hvitved/ruby/call-ctx-rewrite
Ruby: Rework call-context sensitivity logic
|
2022-12-06 07:39:29 +01:00 |
|
ALJI Mohamed
|
054c06be65
|
Update UnsafeUnpack.ql
|
2022-12-06 02:51:07 +01:00 |
|
Ethan Willoner
|
b886157f52
|
Add change note.
|
2022-12-06 00:27:17 +00:00 |
|
Ethan Willoner
|
82c0449d56
|
Fix bug: In OwinRequest URI should be Uri.
|
2022-12-06 00:01:17 +00:00 |
|
Jeroen Ketema
|
6dbc59d5b5
|
C++: Simplify isSink based on reviewer comments
|
2022-12-05 23:23:08 +01:00 |
|
Henry Mercer
|
2627632a41
|
Java: Fix duplicate IDs
|
2022-12-05 19:06:03 +00:00 |
|
Henry Mercer
|
5b040a9476
|
Python: Fix duplicate query IDs
|
2022-12-05 19:04:10 +00:00 |
|
Henry Mercer
|
6484935d25
|
Add CI job for check query IDs script
|
2022-12-05 18:51:48 +00:00 |
|
Henry Mercer
|
9c27cc0abe
|
Add a script to check for duplicate query IDs
|
2022-12-05 18:51:48 +00:00 |
|
Nick Rolfe
|
23b02f4f27
|
Merge pull request #11544 from github/nickrolfe/update-query-docs
Docs: rewrite "defining the results of a query"
|
2022-12-05 17:14:56 +00:00 |
|
Nick Rolfe
|
731419fc80
|
Remove reference to query console
Co-authored-by: Felicity Chapman <felicitymay@github.com>
|
2022-12-05 16:47:15 +00:00 |
|
Felicity Chapman
|
96476cb50d
|
Merge pull request #11561 from github/felicitymay-lgtm-fixes
Remove one more outdated reference
|
2022-12-05 16:31:19 +00:00 |
|
Chris Smowton
|
5bb1319b0f
|
Merge pull request #9779 from porcupineyhairs/goSqlInjection
Golang : Add SQL sinks for `gorqlite` and `GoFrame` frameworks
|
2022-12-05 16:30:22 +00:00 |
|