Rasmus Wriedt Larsen
|
b30142c1d7
|
Python: Move CommandInjection to new dataflow API
|
2023-08-28 15:27:49 +02:00 |
|
Rasmus Wriedt Larsen
|
700841e9b0
|
Python: Move UnsafeShellCommandConstruction to new dataflow API
|
2023-08-28 15:27:49 +02:00 |
|
Rasmus Wriedt Larsen
|
d4e4e2d426
|
Python: Move TarSlip to new dataflow API
|
2023-08-28 15:27:49 +02:00 |
|
Rasmus Wriedt Larsen
|
e97032909a
|
Python: Move PathInjection to new dataflow API
|
2023-08-28 15:27:49 +02:00 |
|
Rasmus Wriedt Larsen
|
245c24077d
|
Python: Move SqlInjection to new dataflow API
|
2023-08-28 15:27:49 +02:00 |
|
Michael Nebel
|
e19c7758ed
|
C#: Cleanup NugetPackages.cs.
|
2023-08-28 15:19:16 +02:00 |
|
Michael Nebel
|
6e4865ddd9
|
C#: Download nuget.exe to the source directory in case it is not installed.
|
2023-08-28 15:14:13 +02:00 |
|
Michael Nebel
|
b6c2ea520b
|
C#: Some re-factoring of NugetPackages and logic for file downloading.
|
2023-08-28 15:14:13 +02:00 |
|
yoff
|
2e981e330b
|
Merge pull request #14059 from RasmusWL/fix-loginjection-tests
Python: Fix stdlib sinks in LogInjection query
|
2023-08-28 14:44:51 +02:00 |
|
amammad
|
68392e7ae7
|
V1
|
2023-08-28 22:23:51 +10:00 |
|
yoff
|
6e05246daa
|
Merge pull request #13935 from yoff/python/mad-on-externals
Python: MaD on externals
|
2023-08-28 14:04:54 +02:00 |
|
Rasmus Wriedt Larsen
|
c807ab4216
|
Python: Apply suggestions from code review
Co-authored-by: yoff <lerchedahl@gmail.com>
|
2023-08-28 14:04:22 +02:00 |
|
yoff
|
826b8e6aa5
|
Merge pull request #14067 from RasmusWL/modern-dataflowquerytests
Python: Adopt tests to new `DataflowQueryTest`
|
2023-08-28 13:54:34 +02:00 |
|
erik-krogh
|
78487d437f
|
add test for await using in TypeScript
|
2023-08-28 13:30:35 +02:00 |
|
erik-krogh
|
1e3387f2c5
|
Merge branch 'main' into ts52
|
2023-08-28 13:22:56 +02:00 |
|
Michael Nebel
|
e7dbe9f289
|
Merge pull request #14028 from michaelnebel/csharp/dependencygetfiles
C#: Improve GetFiles in the Dependency Manager.
|
2023-08-28 12:53:28 +02:00 |
|
Rasmus Wriedt Larsen
|
38b78128c0
|
Merge pull request #13990 from RasmusWL/experimental-cleanup
Python: Port old experimental points-to based queries
|
2023-08-28 12:11:17 +02:00 |
|
Rasmus Wriedt Larsen
|
889cb7a95b
|
Python: Adopt tests to new DataflowQueryTest
Co-authored-by: Rasmus Lerchedahl Petersen <yoff@github.com>
|
2023-08-28 11:44:01 +02:00 |
|
Rasmus Wriedt Larsen
|
9c44235782
|
Python: Modernize DataflowQueryTest.qll
Co-authored-by: Rasmus Lerchedahl Petersen <yoff@github.com>
|
2023-08-28 11:40:41 +02:00 |
|
Rasmus Wriedt Larsen
|
7cba6cd1d8
|
Python: Update .expected files
Due to change in path-graph, and including LHS of assignments
|
2023-08-28 11:33:44 +02:00 |
|
Rasmus Wriedt Larsen
|
0f242475f2
|
Merge branch 'main' into experimental-cleanup
|
2023-08-28 11:01:22 +02:00 |
|
Rasmus Wriedt Larsen
|
0dca8a5d86
|
Python: Remove old points-to modeling file
Since all of this was ported already
|
2023-08-28 10:40:45 +02:00 |
|
Rasmus Wriedt Larsen
|
39e2b133e9
|
Python: Fix naming
|
2023-08-28 10:40:33 +02:00 |
|
erik-krogh
|
be2712698b
|
add support for await using in the JS parser
|
2023-08-28 09:34:13 +02:00 |
|
erik-krogh
|
1cbee6a8a4
|
delete leftover todo comment that was implemented
|
2023-08-28 08:40:35 +02:00 |
|
amammad
|
25c60c455e
|
v1
|
2023-08-27 23:53:45 +10:00 |
|
Mathias Vorreiter Pedersen
|
bb1712b489
|
Merge branch 'main' into reuse-even-more-nodes
|
2023-08-26 18:08:58 +01:00 |
|
Alex Ford
|
9957e2683b
|
Merge pull request #13313 from maikypedia/maikypedia/ldap-improper-auth
Ruby: Add Improper LDAP Authentication query (CWE-287)
|
2023-08-25 20:52:34 +01:00 |
|
Maiky
|
17565cde75
|
Add JWT Security Queries
|
2023-08-25 21:28:53 +02:00 |
|
Alexander Eyers-Taylor
|
ea2140dc7d
|
Apply suggestions from code review
Co-authored-by: Mathias Vorreiter Pedersen <mathiasvp@github.com>
|
2023-08-25 17:15:08 +01:00 |
|
Alex Eyers-Taylor
|
8badf10a53
|
CPP: Add change notes for changes to DeleteExpr/DeleteArrayExpr
|
2023-08-25 17:13:34 +01:00 |
|
Alex Ford
|
ae635c609f
|
Ruby: autoformat
|
2023-08-25 17:11:07 +01:00 |
|
Mathias Vorreiter Pedersen
|
9542646a5d
|
C++: Add change note.
|
2023-08-25 16:45:53 +01:00 |
|
Mathias Vorreiter Pedersen
|
104416cc59
|
C++: Accept test changes.
|
2023-08-25 16:40:06 +01:00 |
|
Mathias Vorreiter Pedersen
|
cb2f7b0f95
|
C++: Exclude results in macro expansions from 'cpp/compare-where-assign-meant'.
|
2023-08-25 16:39:47 +01:00 |
|
Mathias Vorreiter Pedersen
|
759f939edd
|
C++: Add false positive.
|
2023-08-25 16:38:48 +01:00 |
|
Rasmus Wriedt Larsen
|
bf9a0dab2a
|
Python: Fix stdlib sinks in LogInjection query
|
2023-08-25 17:04:48 +02:00 |
|
Rasmus Wriedt Larsen
|
7852429df2
|
Python: Accept LogInjection .expected changes
I don't know how this had gone unnoticed for so long, but I realized when I tried to run this query locally
|
2023-08-25 17:04:40 +02:00 |
|
Alex Eyers-Taylor
|
d699201ad0
|
CPP: Add a test demonstating when a deallocator call exists.
|
2023-08-25 15:45:50 +01:00 |
|
Alex Eyers-Taylor
|
027ed5e909
|
CPP: Docs improvements to DeleteOrDeleteArrayExpr
|
2023-08-25 15:45:50 +01:00 |
|
Alex Eyers-Taylor
|
417b9c9a32
|
CPP: Use DeleteOrDeleteArrayExpr in another place.
|
2023-08-25 15:45:50 +01:00 |
|
Alex Eyers-Taylor
|
a3711e1df0
|
CPP: Replace getAllocatorCall with getDeallocator call.
|
2023-08-25 15:45:50 +01:00 |
|
Shati Patel
|
c5612ae522
|
Merge pull request #14051 from github/shati-patel/mrva-results-view
Docs: Update screenshots of variant analysis results view
|
2023-08-25 15:42:49 +01:00 |
|
Mathias Vorreiter Pedersen
|
68bccfdb93
|
Merge pull request #14013 from alexet/only-taint-argv-indirections
CPP:Only taint argv indirections
|
2023-08-25 15:19:51 +01:00 |
|
Mathias Vorreiter Pedersen
|
b948ed9045
|
C++: Accept test changes and add a few non-field flow tests to make up for the fact that we're no longer using field flow in the query.
|
2023-08-25 15:18:15 +01:00 |
|
Mathias Vorreiter Pedersen
|
89b91ec5c8
|
C++: Disable field flow from the 'cpp/invalid-pointer-deref' query.
|
2023-08-25 15:01:37 +01:00 |
|
Mathias Vorreiter Pedersen
|
c3cf48b38a
|
C++: Add a 'fieldFlowBranchLimit' override to the product flow library.
|
2023-08-25 14:58:56 +01:00 |
|
Michael Nebel
|
02b8adf717
|
C#: Address review comments and some light re-factoring.
|
2023-08-25 15:33:54 +02:00 |
|
Maiky
|
ffd618d6cc
|
Revert "Add "" and nil as sources"
This reverts commit 664c1eba72.
|
2023-08-25 15:23:55 +02:00 |
|
data-douser
|
5d986d7b60
|
Update codeql-library-for-go.rst
Correct a typo in the golang docs.
|
2023-08-25 07:10:25 -06:00 |
|