Ed Minnix
|
da718610e8
|
Refactor HttpsUrlsQuery.qll
|
2023-03-29 22:33:09 -04:00 |
|
Ed Minnix
|
c67b984fff
|
Refactor RandomQuery.qll
|
2023-03-29 22:33:09 -04:00 |
|
Ed Minnix
|
2698b61514
|
Refactor HardcodedCredentialsApiCall.qll
|
2023-03-29 22:33:08 -04:00 |
|
Ed Minnix
|
e8f7e3fcf1
|
Refactor ExternalAPIs.qll
|
2023-03-29 22:33:08 -04:00 |
|
Ed Minnix
|
ac8dec740a
|
Refactor UnsafeCertTrustQuery
|
2023-03-29 22:33:08 -04:00 |
|
Ed Minnix
|
a040ff6997
|
Refactor ConditionalBypass
|
2023-03-29 22:33:08 -04:00 |
|
Ed Minnix
|
aa7934161a
|
Refactor CleartextStorage libraries
|
2023-03-29 22:33:08 -04:00 |
|
Ed Minnix
|
b4130e650d
|
Refactor RegexFlowConfigs.qll
|
2023-03-29 22:33:08 -04:00 |
|
Ed Minnix
|
6681c1a3a8
|
Refactor SnakeYaml.qll
|
2023-03-29 22:33:08 -04:00 |
|
Ed Minnix
|
e5f11d00a7
|
Refactor CWE-502/UnsafeDeserialization
|
2023-03-29 22:33:08 -04:00 |
|
Ed Minnix
|
9afa051621
|
Move ExternallyControlledFormatStringFlow to Query.qll
|
2023-03-29 17:59:34 -04:00 |
|
Ed Minnix
|
7d9fad5733
|
Add change note
|
2023-03-29 17:59:33 -04:00 |
|
Ed Minnix
|
3eaa94a5d2
|
Move ResponseSplitting configuration to ResponseSplittingQuery.qll
|
2023-03-29 17:59:33 -04:00 |
|
Ed Minnix
|
e3af8b2c7f
|
Move LdapInjectionLib to LdapInjectionQuery.qll
|
2023-03-29 17:59:33 -04:00 |
|
Ed Minnix
|
1add692643
|
Move XssConfig to XssQuery.qll
|
2023-03-29 17:59:33 -04:00 |
|
Ed Minnix
|
19a94a5c13
|
Move InsecureBeanValidation configuration to Query.qll
|
2023-03-29 17:59:33 -04:00 |
|
Ed Minnix
|
367042bcff
|
Move ZipSlip configurations to Query.qll library
|
2023-03-29 17:59:33 -04:00 |
|
Ed Minnix
|
ce2cab0d2e
|
Move TaintedPath configurations to Query.qll
|
2023-03-29 17:59:33 -04:00 |
|
Edward Minnix III
|
434b1b35d8
|
Merge pull request #12698 from egregius313/egregius313/java/refactor-commandline-query-and-request-forgery
Java: Refactor CommandLineQuery.qll and RequestForgeryConfig.qll
|
2023-03-29 17:49:51 -04:00 |
|
Tom Hvitved
|
6af973a8a6
|
Merge pull request #12704 from github/hvitved-patch-1
|
2023-03-29 21:18:23 +02:00 |
|
Ed Minnix
|
744f2653f0
|
Add QLdoc for RemoteUserInputToArgumentToExecFlow
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
a3c1d08a59
|
Fix ExecUnescaped
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
25359d2218
|
Deprecate execTainted
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
dcd703f1a9
|
Update to the TaintTracking::Global api
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
bbf7c67f9b
|
Remove unnecessary private markers (CommandLine and Request forgery)
|
2023-03-29 11:45:09 -04:00 |
|
Ed Minnix
|
0249890747
|
Refactor CommandLineQuery.qll
|
2023-03-29 11:45:09 -04:00 |
|
Gulshan Singh
|
abec99badb
|
C++: Add getSizeExpr and getSizeMult predicates to BufferAccess
|
2023-03-29 08:26:00 -07:00 |
|
Edward Minnix III
|
117a983423
|
Merge pull request #12639 from egregius313/egregius313/java/refactor-injection-queries
Java: Refactor injection queries to new dataflow API
|
2023-03-29 11:02:18 -04:00 |
|
Geoffrey White
|
fcefd03b14
|
Swift: Fill out the upgrade/downgrade scripts.
|
2023-03-29 15:54:08 +01:00 |
|
Geoffrey White
|
d5928e150d
|
Swift: Prepare upgrade/downgrade scripts.
|
2023-03-29 15:51:42 +01:00 |
|
Geoffrey White
|
704e42cf22
|
Swift: Accept integration test changes (not sure what caused this exactly but it looks OK to me).
|
2023-03-29 15:49:44 +01:00 |
|
Geoffrey White
|
8e4c7a9d89
|
Swift: Test expectations.
|
2023-03-29 15:49:36 +01:00 |
|
Geoffrey White
|
4ba8de4802
|
Swift: Update codegen.
|
2023-03-29 15:49:26 +01:00 |
|
Geoffrey White
|
f042195e5c
|
Swift: Connect it up.
|
2023-03-29 15:49:17 +01:00 |
|
Geoffrey White
|
d8703210dd
|
Swift: Extract type aliases.
|
2023-03-29 15:49:12 +01:00 |
|
Arthur Baars
|
cc100ea746
|
Ruby: update supported version to 3.2
|
2023-03-29 16:15:41 +02:00 |
|
Mathias Vorreiter Pedersen
|
65c7a504b2
|
C++: Accept test changes.
|
2023-03-29 15:08:50 +01:00 |
|
Jeroen Ketema
|
edfd8715c8
|
Merge pull request #12695 from jketema/swift-configsig
Swift: Refactor a number of queries to use `DataFlow::ConfigSig`
|
2023-03-29 16:07:47 +02:00 |
|
Paolo Tranquilli
|
92197bf9f2
|
Codegen: fix autopep8 pre-commit hook
|
2023-03-29 15:57:45 +02:00 |
|
Mathias Vorreiter Pedersen
|
e3e68b7753
|
Merge pull request #12642 from geoffw0/modernstring
Swift: Modernize the swift/string-length-conflation query
|
2023-03-29 14:55:40 +01:00 |
|
Paolo Tranquilli
|
48c2303391
|
Swift: add upgrade/downgrade scripts
|
2023-03-29 15:44:07 +02:00 |
|
Paolo Tranquilli
|
20128adee4
|
Swift: make imported and exported modules a set
|
2023-03-29 15:44:07 +02:00 |
|
Paolo Tranquilli
|
d7a3cb2d01
|
Codegen: implement set in ql test generation
|
2023-03-29 15:44:07 +02:00 |
|
Paolo Tranquilli
|
d5ee728657
|
Codegen: implement set in qlgen (excluding QL tests)
|
2023-03-29 15:44:07 +02:00 |
|
Paolo Tranquilli
|
00b59f83f2
|
Codegen: disallow child on set properties
|
2023-03-29 15:44:06 +02:00 |
|
Paolo Tranquilli
|
442e85099b
|
Codegen: implement set in cppgen
|
2023-03-29 15:44:06 +02:00 |
|
Paolo Tranquilli
|
eef140c3fc
|
Codegen: implement set in dbschemegen
|
2023-03-29 15:44:06 +02:00 |
|
Paolo Tranquilli
|
bba5d9dbd6
|
Codegen: add set to schema definitions
|
2023-03-29 15:44:06 +02:00 |
|
Mathias Vorreiter Pedersen
|
27d8f98418
|
C++: Replace 'int' with 'float' in tests and accept test changes.
|
2023-03-29 14:27:37 +01:00 |
|
Mathias Vorreiter Pedersen
|
a2c0e36062
|
C++: Accept test changes.
|
2023-03-29 14:25:05 +01:00 |
|