Geoffrey White
|
ed2a14a3ec
|
Rust: Update doc comments for StmtList.
|
2025-09-24 15:28:23 +01:00 |
|
Joe Farebrother
|
9f5bfeb7f4
|
Update test output
|
2025-09-24 15:03:40 +01:00 |
|
Florin Coada
|
6e0ce9a885
|
Add changelog entry for CodeQL 2.23.1 release
|
2025-09-24 13:30:11 +01:00 |
|
Joe Farebrother
|
654ed9ca12
|
Update integration tests
|
2025-09-24 10:58:53 +01:00 |
|
Mathias Vorreiter Pedersen
|
99e1a07b8e
|
C++: Add a comment to the 'ConditionalBranchInstruction' case in 'additionalImpliesStep.
|
2025-09-24 10:58:47 +01:00 |
|
Mathias Vorreiter Pedersen
|
2b47ac83e8
|
C++: Remove superfluous inference logic.
|
2025-09-24 10:51:45 +01:00 |
|
Mathias Vorreiter Pedersen
|
b3cbdb5c1a
|
C++: Add QLDoc to TRange.
|
2025-09-24 10:39:27 +01:00 |
|
Tom Hvitved
|
e6b1e8ec56
|
Rust: Check call arities in path resolution
|
2025-09-24 10:19:56 +02:00 |
|
Tom Hvitved
|
92cced201e
|
Merge pull request #20496 from hvitved/rust/path-resolution-use-visibility
Rust: Visibility check for qualified path resolution
|
2025-09-24 10:19:22 +02:00 |
|
Simon Friis Vindum
|
26aa938acc
|
Merge pull request #20452 from paldepind/rust/mad-source-parameter
Rust, shared: Support `Parameter` in source MaD models
|
2025-09-24 09:37:25 +02:00 |
|
Asger F
|
2e8091f0fb
|
Merge pull request #20419 from asgerf/js/express-json-send
JS: Model Express json and jsonp methods
|
2025-09-24 09:25:32 +02:00 |
|
Joe Farebrother
|
85f886932d
|
Update changenote
|
2025-09-23 15:51:31 +01:00 |
|
Joe Farebrother
|
55fd7c85c6
|
Update documentation
|
2025-09-23 15:50:27 +01:00 |
|
Joe Farebrother
|
1208195d8a
|
Align alert messages across languages.
|
2025-09-23 15:46:53 +01:00 |
|
Joe Farebrother
|
2cffb21604
|
Update and fix tests
|
2025-09-23 15:41:09 +01:00 |
|
Chad Bentz
|
46d330cb21
|
Merge branch 'ruby-framework-grape' of github.com:felickz/codeql into ruby-framework-grape
|
2025-09-23 10:40:46 -04:00 |
|
Chad Bentz
|
37e0c30842
|
Add expected output for VariablesConsistency test case
|
2025-09-23 10:40:30 -04:00 |
|
Kasper Svendsen
|
f02da68c55
|
Overlay: Discard base XML entities in overlay extracted files
|
2025-09-23 12:27:51 +02:00 |
|
Kasper Svendsen
|
718c0abdb6
|
Overlay: Discard base config entities in overlay extracted files
|
2025-09-23 12:27:51 +02:00 |
|
Joe Farebrother
|
d28e8004fd
|
Add sensitive data heuristic
|
2025-09-23 10:08:08 +01:00 |
|
Chad Bentz
|
7a9a259c03
|
Merge branch 'main' into ruby-framework-grape
|
2025-09-22 19:29:36 -04:00 |
|
Chad Bentz
|
89fd9694ce
|
codeql query format
|
2025-09-22 19:25:05 -04:00 |
|
Chad Bentz
|
6e56c549b2
|
Refactor Grape method call classes to simplify handling of API instance calls for headers, request, route_param, and cookies
|
2025-09-22 19:21:23 -04:00 |
|
Chad Bentz
|
0665c39a07
|
Refactor GrapeHelperMethod constructor to reuse getHelperSelf to traverse dataflow instead of AST
- add tests to check for nested helpers
|
2025-09-22 19:08:34 -04:00 |
|
Tom Hvitved
|
1183e50435
|
Update rust/ql/lib/change-notes/2025-09-19-parameter-mad.md
|
2025-09-22 19:45:34 +02:00 |
|
Geoffrey White
|
5ad332e37f
|
Merge pull request #20432 from github/copilot/fix-f50317f8-0a91-4bb4-a01b-353dcf0f6f3f
Rust: Implement new query for non-HTTPS URLs (CWE-319)
|
2025-09-22 18:03:52 +01:00 |
|
Chad Bentz
|
ecd0ce65fe
|
Refactor GrapeHeadersBlockCall and GrapeCookiesBlockCall to simplify method call checks
|
2025-09-22 12:52:30 -04:00 |
|
Geoffrey White
|
266624dd0f
|
Rust: The test needs to have Source tags now.
|
2025-09-22 17:12:52 +01:00 |
|
Geoffrey White
|
86c8c3c8c0
|
Rust: Fix warning by making the query a path-problem.
|
2025-09-22 17:01:12 +01:00 |
|
Geoffrey White
|
6362884d16
|
Rust: Autoformat.
|
2025-09-22 16:59:11 +01:00 |
|
Geoffrey White
|
43ac75ed62
|
Rust: Address another tiny suggestion from review.
|
2025-09-22 16:58:07 +01:00 |
|
Geoffrey White
|
5b4632b432
|
Apply suggestions from code review
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2025-09-22 16:55:43 +01:00 |
|
Geoffrey White
|
cc9c4149d7
|
Apply suggestions from code review
|
2025-09-22 16:54:08 +01:00 |
|
Geoffrey White
|
3de191177c
|
Rust: Change note.
|
2025-09-22 16:12:30 +01:00 |
|
Geoffrey White
|
ae9025334e
|
Rust: Add the new query to suite lists.
|
2025-09-22 16:12:29 +01:00 |
|
Geoffrey White
|
4662e42584
|
Rust: Add examples as tests (and fix them).
|
2025-09-22 16:12:27 +01:00 |
|
Geoffrey White
|
bd07350bc3
|
Rust: Add qhelp and examples.
|
2025-09-22 16:12:26 +01:00 |
|
Geoffrey White
|
94afc82304
|
Rust: Fix an issue with the local flow.
|
2025-09-22 16:12:25 +01:00 |
|
Geoffrey White
|
a3ed83bfff
|
Rust: Make state transition / barrier nodes more reliable.
|
2025-09-22 16:12:23 +01:00 |
|
Geoffrey White
|
2654affeee
|
Rust: Account for the 'secure' and 'partitioned' attributes.
|
2025-09-22 16:12:22 +01:00 |
|
Geoffrey White
|
257a1b0179
|
Rust: Refactor sources, sinks into an extensions source file.
|
2025-09-22 16:09:30 +01:00 |
|
Geoffrey White
|
eadf922280
|
Rust: Use models-as-data, add source/sink/flow models.
|
2025-09-22 16:04:56 +01:00 |
|
Geoffrey White
|
d52b668149
|
Rust: Add security-severity tag.
|
2025-09-22 16:04:54 +01:00 |
|
Geoffrey White
|
7e75c1d242
|
Rust: Add very basic query prototype.
|
2025-09-22 16:04:53 +01:00 |
|
Geoffrey White
|
513ae2ab54
|
Rust: Add tests for insecure cookies.
|
2025-09-22 16:04:52 +01:00 |
|
Chad Bentz
|
b837c56bec
|
Refactor RootApi and GrapeApiClass constructors for improved readability; add getHelperSelf method to retrieve self parameter in helpers block.
|
2025-09-22 10:13:33 -04:00 |
|
Simon Friis Vindum
|
45b84ffb31
|
Rust: Ensure singleton
|
2025-09-22 14:23:50 +02:00 |
|
Simon Friis Vindum
|
4244a6569c
|
Rust: Add change note
|
2025-09-22 14:19:01 +02:00 |
|
Simon Friis Vindum
|
a4c61f6945
|
Rust: Accept test changes
|
2025-09-22 14:18:59 +02:00 |
|
Simon Friis Vindum
|
7d6e2060e5
|
Adapt all languages to changes in shared library
|
2025-09-22 14:18:58 +02:00 |
|