Mathias Vorreiter Pedersen
|
4b02f88089
|
C++: Add change note.
|
2024-05-22 12:37:08 +01:00 |
|
Mathias Vorreiter Pedersen
|
af81698fa8
|
C++: Fix FP and accept test changes.
|
2024-05-22 12:34:09 +01:00 |
|
Mathias Vorreiter Pedersen
|
91f860ba4f
|
C++: Add 'cpp/use-of-unique-pointer-after-lifetime-ends' FP.
|
2024-05-22 12:33:34 +01:00 |
|
Paolo Tranquilli
|
eab940c45d
|
Merge branch 'main' into redsun82/kotlin
|
2024-05-22 13:30:23 +02:00 |
|
Alex Ford
|
8119a27540
|
Merge pull request #16185 from alexrford/rb/conditions-arr0
Ruby: ActiveRecord - refine `conditions` argument as an SQLi sink
|
2024-05-22 12:19:10 +01:00 |
|
Michael Nebel
|
e4319db18d
|
C#: Filter out unwanted summaries at the root.
|
2024-05-22 12:53:55 +02:00 |
|
Tom Hvitved
|
a006c29a00
|
Merge pull request #16481 from hvitved/treesitter/bump2
Tree-sitter: Bump to 0.22.6
|
2024-05-22 12:53:14 +02:00 |
|
Tom Hvitved
|
70cf16597b
|
Data flow: Remove two redundant conjuncts
|
2024-05-22 12:45:11 +02:00 |
|
Anders Schack-Mulligen
|
a078dcf1f2
|
Merge pull request #16550 from aschackmull/java/zipslip-number-sanitizer
Java: Improve sanitizer for java/zipslip
|
2024-05-22 12:43:44 +02:00 |
|
Mathias Vorreiter Pedersen
|
eda815789b
|
Update cpp/ql/src/experimental/Likely Bugs/DerefNullResult.ql
|
2024-05-22 11:21:04 +01:00 |
|
Cornelius Riemenschneider
|
24a14badbb
|
Bazel: Remove some kwargs.pop invocations.
|
2024-05-22 12:09:18 +02:00 |
|
Cornelius Riemenschneider
|
09f60e3e45
|
C#: Address C# code comments.
|
2024-05-22 12:09:12 +02:00 |
|
Tony Torralba
|
5ec3335b07
|
Java: Reword recommendation section of XXE query
|
2024-05-22 11:34:19 +02:00 |
|
Anders Schack-Mulligen
|
a74cf6501a
|
Java: update qltest expected files.
|
2024-05-22 11:13:06 +02:00 |
|
Alvaro Muñoz
|
367531a659
|
Bump qlpack versions
|
2024-05-22 11:08:22 +02:00 |
|
Alvaro Muñoz
|
4d28d6aa7c
|
Improve toctou queries
|
2024-05-22 11:07:52 +02:00 |
|
Michael Nebel
|
84e412fe36
|
Merge pull request #16477 from michaelnebel/csharp/madinlinetest
C#: Inline expectation for model generator test.
|
2024-05-22 11:05:23 +02:00 |
|
Anders Schack-Mulligen
|
ba97c3623a
|
Java: Change most java.time.* df-generated taint models to neutrals.
|
2024-05-22 10:29:54 +02:00 |
|
Anders Schack-Mulligen
|
54f2316d00
|
Java: Add a neutral model.
|
2024-05-22 10:29:49 +02:00 |
|
Anders Schack-Mulligen
|
7828cb8f5a
|
Java: Add change note.
|
2024-05-22 10:27:33 +02:00 |
|
Anders Schack-Mulligen
|
d82acf5866
|
Java: Add simple type sanitization to java/zipslip.
|
2024-05-22 10:23:30 +02:00 |
|
Tamás Vajk
|
855fe12c6c
|
Merge pull request #16549 from tamasvajk/fix/tsp-diag
C#: Fix TSP diagnostic message
|
2024-05-22 10:10:26 +02:00 |
|
Anders Schack-Mulligen
|
012b861ffb
|
Ruby: Accept qltest .expected file changes.
|
2024-05-22 10:08:59 +02:00 |
|
Anders Schack-Mulligen
|
c4ae18649e
|
Ruby: Accept qltest .expected file changes (interesting).
|
2024-05-22 10:08:59 +02:00 |
|
Anders Schack-Mulligen
|
c2ec1bf561
|
Swift: Accept qltest .expected file changes.
|
2024-05-22 10:08:56 +02:00 |
|
Anders Schack-Mulligen
|
73b8314308
|
C#: Accept qltest .expected file changes.
|
2024-05-22 10:05:42 +02:00 |
|
Anders Schack-Mulligen
|
22c1d52381
|
Dataflow: Add provenance for configuration-specific steps.
|
2024-05-22 10:05:42 +02:00 |
|
Tamas Vajk
|
91aa182d53
|
C#: Fix TSP diagnostic message
|
2024-05-22 08:49:55 +02:00 |
|
Paolo Tranquilli
|
b744f9fab9
|
Merge pull request #16544 from github/redsun82/bazel-csharp-2
Bazel/C#: avoid zipmerge
|
2024-05-22 08:18:30 +02:00 |
|
Erik Krogh Kristensen
|
92df0a3d46
|
Merge pull request #16546 from erik-krogh/ts-big-file-fix
JS: fix that very large TypeScript files would crash the extractor
|
2024-05-22 07:41:58 +02:00 |
|
Alvaro Muñoz
|
e86fa9744a
|
Bump qlpack versions
|
2024-05-21 23:05:30 +02:00 |
|
Alvaro Muñoz
|
e5b5a0db04
|
Merge pull request #39 from github/externally_triggereable_jobs
externally triggereable jobs
|
2024-05-21 23:03:00 +02:00 |
|
Alvaro Muñoz
|
5d32071adc
|
resolve conflicts
|
2024-05-21 23:02:34 +02:00 |
|
Alvaro Muñoz
|
313acfcac2
|
Add externally triggereable data model and predicates
|
2024-05-21 23:00:40 +02:00 |
|
am0o0
|
0895f7d971
|
update qlref files
|
2024-05-21 22:48:17 +02:00 |
|
am0o0
|
c470c078dc
|
move to experimental
|
2024-05-21 22:42:16 +02:00 |
|
erik-krogh
|
a30bac14e9
|
add change-note
|
2024-05-21 22:14:39 +02:00 |
|
Philippe Antoine
|
ab4b823c2e
|
fixup unique assignment
|
2024-05-21 22:10:00 +02:00 |
|
Tom Hvitved
|
22aea47604
|
Repin
|
2024-05-21 20:59:54 +02:00 |
|
Tom Hvitved
|
a87ceed361
|
Merge pull request #16394 from hvitved/dataflow/synth-param-ret-node
Data flow: Synthesize parameter return nodes
|
2024-05-21 20:55:14 +02:00 |
|
Tom Hvitved
|
bc1283c715
|
Ruby: Reference official Tree-sitter grammar in Cargo.toml
|
2024-05-21 20:51:50 +02:00 |
|
erik-krogh
|
61c72361cd
|
move the "isFileTooLarge" earlier in the pipeline, so we're only doing it once
|
2024-05-21 20:01:24 +02:00 |
|
erik-krogh
|
241f977488
|
fix that very large TypeScript files would crash the extractor
|
2024-05-21 19:52:43 +02:00 |
|
Paolo Tranquilli
|
3c52e3b7c5
|
Bazel/C#: adjust DefaultInfo in codeql_pkg_files_overlay
|
2024-05-21 16:32:24 +01:00 |
|
Geoffrey White
|
8dad622de2
|
Swift: Fix some inconsistencies.
|
2024-05-21 16:32:00 +01:00 |
|
Cornelius Riemenschneider
|
730d5425b3
|
C#: Add comment justifing turning off strict deps.
|
2024-05-21 17:30:27 +02:00 |
|
Cornelius Riemenschneider
|
767d427c1b
|
C#: Re-implement the git version logic using an attribute.
|
2024-05-21 17:28:31 +02:00 |
|
Chuan-kai Lin
|
8a22e2283c
|
Merge pull request #16424 from github/cklin/ruby-entities-reorder
Ruby: Use entities in reorder directives
|
2024-05-21 07:32:28 -07:00 |
|
Paolo Tranquilli
|
b19bf2f37a
|
Bazel/C#: avoid zipmerge
|
2024-05-21 15:29:54 +01:00 |
|
Paul Hodgkinson
|
65dfd4c860
|
Merge branch 'main' into aegilops/js/insecure-helmet-middleware
|
2024-05-21 14:46:49 +01:00 |
|