github-actions[bot]
|
9fe993bec3
|
Release preparation for version 2.15.0
|
2023-10-04 14:15:27 +00:00 |
|
Henry Mercer
|
da92da2204
|
Bump minor versions of packs we regularly release
|
2023-10-03 16:31:23 +01:00 |
|
Henry Mercer
|
f3847b3f51
|
Merge branch 'main' into henrymercer/rc-3.11-mergeback
|
2023-10-03 16:30:23 +01:00 |
|
Asger F
|
0d96ed8aee
|
Merge pull request #14305 from asgerf/shared/flow-state-inout-barriers
Shared: add in/out barriers with flow state
|
2023-09-28 11:07:23 +02:00 |
|
Anders Schack-Mulligen
|
a08fe5b8b1
|
Go: Use shared FileSystem library.
|
2023-09-28 08:58:55 +02:00 |
|
Asger F
|
d501856519
|
Update DataFlowImpl.qll copies
|
2023-09-25 10:05:29 +02:00 |
|
Anders Schack-Mulligen
|
6316f61af9
|
Go: Fix import conflict.
|
2023-09-22 15:09:25 +02:00 |
|
Anders Schack-Mulligen
|
66da997b7b
|
Dataflow: Make use of defaults for language-specific hooks.
|
2023-09-22 14:54:22 +02:00 |
|
Anders Schack-Mulligen
|
13f7daf71e
|
Merge pull request #13982 from aschackmull/dataflow/typeflow-calledge-pruning
Dataflow: Add type-based call-edge pruning.
|
2023-09-21 13:33:08 +02:00 |
|
github-actions[bot]
|
3acf5244b0
|
Post-release preparation for codeql-cli-2.14.6
|
2023-09-20 10:25:10 +00:00 |
|
Chris Smowton
|
a8afa05b1d
|
Correct ReplaceAll params
ReplaceAll doesn't take a count argument
|
2023-09-20 10:00:53 +01:00 |
|
Phill MV
|
11218f79c6
|
s/Replace/ReplaceAll/ in LogInjectionGood.go
|
2023-09-19 14:43:54 -04:00 |
|
github-actions[bot]
|
0a3670727f
|
Release preparation for version 2.14.6
|
2023-09-19 11:40:30 +00:00 |
|
Chris Smowton
|
a63bb1bbed
|
Tidy
|
2023-09-15 12:58:44 +01:00 |
|
Anders Schack-Mulligen
|
f5a4b792bd
|
C++/Go/Python/Ruby/Swift: Add dummy localMustFlowStep.
|
2023-09-13 15:43:46 +02:00 |
|
Kevin Stubbings
|
f9fe86a1ca
|
Added change-notes
|
2023-09-12 21:34:30 -07:00 |
|
Kevin Stubbings
|
7d213d5bb9
|
Add Integer/Boolean Sanitizer
|
2023-09-12 21:10:11 -07:00 |
|
github-actions[bot]
|
d699880c86
|
Post-release preparation for codeql-cli-2.14.4
|
2023-09-08 21:17:52 +00:00 |
|
github-actions[bot]
|
abf2b12b1c
|
Release preparation for version 2.14.4
|
2023-09-05 16:56:14 +00:00 |
|
Michael B. Gale
|
77369a09a4
|
Merge pull request #13872 from Kwstubbs/Kevin_error_sanitizer
Go: Add sanitizer to remove paths passing through http.Error
|
2023-09-04 13:25:55 +01:00 |
|
Kevin Stubbings
|
84d52b94a3
|
Forgot delete
|
2023-08-29 08:38:18 -07:00 |
|
Kevin Stubbings
|
ffa3bdc8bb
|
Change note changes
|
2023-08-29 08:37:15 -07:00 |
|
Jeroen Ketema
|
0d1fd88729
|
Merge pull request #14050 from jketema/inline-6
Consolidate all `InlineFlowTest` libraries in the dataflow qlpack
|
2023-08-29 09:30:35 +02:00 |
|
Kevin Stubbings
|
29e14f7d8d
|
Feedback, Format, Add Change Notes
|
2023-08-28 14:15:21 -07:00 |
|
Dave Bartolomeo
|
3343b78015
|
Merge pull request #14074 from github/post-release-prep/codeql-cli-2.14.3
Post-release preparation for codeql-cli-2.14.3
|
2023-08-28 13:34:10 -04:00 |
|
github-actions[bot]
|
3eba77421a
|
Post-release preparation for codeql-cli-2.14.3
|
2023-08-28 15:53:49 +00:00 |
|
Jeroen Ketema
|
9d573e5544
|
Consolidate all InlineFlowTest libraries in the dataflow qlpack
|
2023-08-24 21:38:46 +02:00 |
|
Michael Nebel
|
ce6fd8ac5f
|
Merge pull request #13432 from michaelnebel/updateissupported
Java/C#: Update telemetry queries to report callables with sink/source neutrals as being supported.
|
2023-08-22 08:39:38 +02:00 |
|
Jeroen Ketema
|
2d0f73d7c2
|
Merge pull request #13881 from jketema/shared-taint-tracking
Introduce shared taint tracking library
|
2023-08-21 12:45:49 +02:00 |
|
Michael Nebel
|
106ba11e10
|
Address review comments.
|
2023-08-21 09:59:02 +02:00 |
|
Michael Nebel
|
d66fe08661
|
Add QLDoc for the getKind predicate.
|
2023-08-21 09:59:02 +02:00 |
|
Michael Nebel
|
25cc561e50
|
Go: Sync files and make manual adjustments.
|
2023-08-21 09:59:01 +02:00 |
|
github-actions[bot]
|
098dfb4242
|
Release preparation for version 2.14.3
|
2023-08-18 14:48:15 +00:00 |
|
Michael B. Gale
|
a1c9deea61
|
Merge pull request #13867 from github/mbg/go/1.21-support
Go: Basic Go 1.21 support
|
2023-08-18 14:37:11 +01:00 |
|
Michael B. Gale
|
9082fd218e
|
Add taint flow tests for clear
|
2023-08-17 18:39:32 +01:00 |
|
Michael B. Gale
|
109b96f038
|
Add comment explaining TaintStep test
|
2023-08-17 17:50:41 +01:00 |
|
Michael B. Gale
|
e65269be69
|
Add DefaultTaintSanitizer for clear
|
2023-08-17 17:49:46 +01:00 |
|
Jeroen Ketema
|
33e8310625
|
Merge branch 'main' into shared-taint-tracking
|
2023-08-17 00:14:25 +02:00 |
|
Michael B. Gale
|
1bd536dd9e
|
Rename getLocation to hasLocation
|
2023-08-16 11:21:35 +01:00 |
|
Michael B. Gale
|
c981fd714e
|
Exclude String from TaintSteps
For `os.dirEntry` and `os.unixDirent` which are only available
on unix and Windows respectively.
|
2023-08-15 20:32:41 +01:00 |
|
Michael B. Gale
|
ee58dbc6f7
|
Add new built-ins to builtinFunction predicate
- `clear` isn't pure because it modifies a data structure in place
- `clear` may not be used correctly, but this is determined statically
|
2023-08-15 20:16:42 +01:00 |
|
Henry Mercer
|
1213eba630
|
Merge branch 'main' into post-release-prep/codeql-cli-2.14.2
|
2023-08-11 13:54:55 +01:00 |
|
Michael B. Gale
|
513da82510
|
Model data flow for min and max
|
2023-08-11 11:51:07 +01:00 |
|
Michael B. Gale
|
d189a15737
|
Exclude poly1305.mac.Write from TaintSteps
Not available on arm64
|
2023-08-11 11:33:52 +01:00 |
|
Michael B. Gale
|
a623733dfa
|
Add location info to TaintSteps query
|
2023-08-11 11:10:39 +01:00 |
|
Michael B. Gale
|
ee0bfff9f4
|
Update expected test output for TaintStep
|
2023-08-11 10:57:11 +01:00 |
|
Michael B. Gale
|
bb56536bfa
|
Update expected test output for LocalTaintStep
|
2023-08-11 10:57:10 +01:00 |
|
Michael B. Gale
|
238049a870
|
Add Go 1.21 builtins
|
2023-08-11 10:57:10 +01:00 |
|
Michael B. Gale
|
4df4a0f51f
|
Update expected test output for TypeParamType
|
2023-08-11 10:55:00 +01:00 |
|
Michael B. Gale
|
13d4bd9c0a
|
Make CompareIdenticalValues test work on arm64
|
2023-08-11 10:51:52 +01:00 |
|