aegilops
|
55eeb00309
|
Added experimental tag
|
2023-06-16 17:27:01 +01:00 |
|
Alexandre Boulgakov
|
abc6d62b6f
|
Swift: Use platform-specific Bazel config.
|
2023-06-16 17:24:04 +01:00 |
|
Alexandre Boulgakov
|
679df1e61b
|
Swift: Add "autobuilder" on Windows that simply shows an error.
|
2023-06-16 17:23:50 +01:00 |
|
Alexandre Boulgakov
|
2bb3101316
|
Swift: Rename incompatible OS diagnostic to clarify that it's for the autobuilder.
|
2023-06-16 17:22:43 +01:00 |
|
Alexandre Boulgakov
|
bc48968def
|
Swift: Build incompatible OS diagnostic on all platforms.
|
2023-06-16 17:22:43 +01:00 |
|
aegilops
|
b6c35dd88c
|
Added experimental version of Java Command Injection query, to be more sensitive to unusual code constructs
|
2023-06-16 17:12:53 +01:00 |
|
Ian Lynagh
|
04a7ff7f76
|
Merge pull request #13477 from igfoo/igfoo/diags_classes
Kotlin: Remove diags.ql from classes test
|
2023-06-16 17:07:38 +01:00 |
|
Ian Lynagh
|
096e9a4ba4
|
Kotlin: Avoid another cause of ConcurrentModificationException with 1.9
|
2023-06-16 17:06:54 +01:00 |
|
Philip Ginsbach
|
1ed3baea17
|
mention instantiation in the section on module resolution
|
2023-06-16 17:02:17 +01:00 |
|
Philip Ginsbach
|
45426b9289
|
mention parameters and instantiation-nested types
|
2023-06-16 17:02:17 +01:00 |
|
Philip Ginsbach
|
aedd9f5f6b
|
add QL specification section on module instantiations
|
2023-06-16 17:02:15 +01:00 |
|
Jeroen Ketema
|
9ff5754473
|
C++: Add cpp/invalid-pointer-def FP test case
|
2023-06-16 16:48:24 +02:00 |
|
Jeroen Ketema
|
0e68767efc
|
C++: Add more cpp/invalid-pointer-deref FPs
|
2023-06-16 15:28:05 +02:00 |
|
Rasmus Wriedt Larsen
|
fb6955edf9
|
Python: Add tests of methods in summaries
|
2023-06-16 14:43:45 +02:00 |
|
Rasmus Wriedt Larsen
|
afafaac0d7
|
Python: Fix typo
|
2023-06-16 14:41:36 +02:00 |
|
Jean Helie
|
baf6b74945
|
use new sink mad kinds and simplify isKnownKind predicate
|
2023-06-16 13:58:23 +02:00 |
|
Jean Helie
|
daf2743143
|
only use neutral models of kind "sink"
|
2023-06-16 13:58:23 +02:00 |
|
Ian Lynagh
|
a8acf16088
|
Kotlin: Remove diags.ql from classes test
The diags consistency test already handles this for us.
|
2023-06-16 12:57:19 +01:00 |
|
AlexDenisov
|
b572974536
|
Merge pull request #13476 from github/alexdenisov/rc3.10_mergeback
rc3.10 mergeback: getting Swift changes back to main
|
2023-06-16 11:59:23 +02:00 |
|
Alex Denisov
|
0479ef5b9c
|
Merge remote-tracking branch 'origin/rc/3.10' into alexdenisov/rc3.10_mergeback
|
2023-06-16 10:13:23 +02:00 |
|
Michael Nebel
|
f4f195c837
|
C#: Base tests for CWE-807 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
52c4a47a61
|
C#: Base tests for CWE-798 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
6058cfc037
|
C#: Base tests for CWE-730 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
5483756f17
|
C#: Base tests for CWE-643 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
2857145bba
|
C#: Base tests for CWE-614 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
58d469b932
|
C#: Make path relative to testdir explicit in CWE-601 testcase.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
d414ce046f
|
C#: Base tests for CWE-548 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
7766aaeb1e
|
C#: Base tests for CWE-539 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
5e4d31c10d
|
C#: Base tests for CWE-502 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
faaf26157b
|
C#: Base tests for CWE-451 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
33e798418e
|
C#: Base tests for CWE-384 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
6ec4338cca
|
C#: Base tests for CWE-359 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
b35af64a9d
|
C#: Base tests for CWE-352 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
ae5c149150
|
C#: Base tests for CWE-338 on stubs.
|
2023-06-16 10:08:40 +02:00 |
|
Michael Nebel
|
4500170bb4
|
C#: Base tests for CWE-312 on stubs.
|
2023-06-16 10:08:39 +02:00 |
|
Michael Nebel
|
02dbc600a4
|
C#: Base tests for CWE-248 on stubs.
|
2023-06-16 10:08:39 +02:00 |
|
Michael Nebel
|
680762572a
|
C#: Base tests for CWE-209 on stubs.
|
2023-06-16 10:08:39 +02:00 |
|
Michael Nebel
|
596a8ecf97
|
C#: Base tests for CWE-201 on stubs.
|
2023-06-16 10:08:39 +02:00 |
|
Michael Nebel
|
e0b661c555
|
C#: Base tests for CWE-134 on stubs.
|
2023-06-16 10:08:39 +02:00 |
|
Michael Nebel
|
d1b704fb45
|
C#: Base tests for CWE-119 on stubs.
|
2023-06-16 10:08:39 +02:00 |
|
Michael Nebel
|
b726fe8735
|
C#: Base tests for CWE-114 on stubs.
|
2023-06-16 10:08:39 +02:00 |
|
Michael Nebel
|
6028f4b76f
|
C#: Base tests for CWE-112 on stubs.
|
2023-06-16 10:08:39 +02:00 |
|
AlexDenisov
|
22124409fe
|
Merge pull request #13458 from github/alexdenisov/swift-5.8-against-3.10
Swift: upgrade extractor to support Swift 5.8.1
|
2023-06-16 10:07:02 +02:00 |
|
Tony Torralba
|
c97868f774
|
Add change notes
|
2023-06-16 09:01:02 +02:00 |
|
Tony Torralba
|
3e96fe60c5
|
Go/Java/JS/Python/Ruby: Update the description and qhelp of the ZipSlip query
All filesystem operations, not just writes, with paths built from untrusted archive entry names are dangerous
|
2023-06-16 08:52:44 +02:00 |
|
Geoffrey White
|
df38a12b84
|
Swift: Complete the escape sequences fix.
|
2023-06-15 21:18:15 +01:00 |
|
Geoffrey White
|
39302c62bd
|
Swift: Add support for isDigit and similar.
|
2023-06-15 21:18:15 +01:00 |
|
Geoffrey White
|
355793f6ca
|
Swift: Add support for \u{hhhhhh} escaped characters in regular expressions.
|
2023-06-15 21:18:15 +01:00 |
|
Geoffrey White
|
49dfe5d22b
|
Swift: Add support for \Uhhhhhhhh escaped characters in regular expressions.
|
2023-06-15 21:18:14 +01:00 |
|
Geoffrey White
|
05939bd90a
|
Swift: Add a test case for \Uhhhhhhhh character escapes.
|
2023-06-15 20:51:21 +01:00 |
|