Taus Brock-Nannestad
|
ebb593466d
|
Python: Fixup CWE-089 tests
|
2020-11-02 11:45:14 +01:00 |
|
Taus Brock-Nannestad
|
7a395bf7c8
|
Python: Fixup CWE-078 tests.
|
2020-11-02 11:44:42 +01:00 |
|
Taus Brock-Nannestad
|
52dc905037
|
Python: Fixup CWE-502 tests.
|
2020-11-02 11:44:00 +01:00 |
|
Geoffrey White
|
35f4646ee0
|
C++: Add test cases for UnusedLocals.
|
2020-11-02 10:40:42 +00:00 |
|
Rasmus Lerchedahl Petersen
|
d35bf8f446
|
Python: Update comments on PEP 249 module
|
2020-11-02 11:22:51 +01:00 |
|
Tom Hvitved
|
b78234fe83
|
Merge pull request #4586 from hvitved/csharp/dataflow/common-sub-type-join-fix
C#: Fix bad join-order in `commonSubTypeGeneral/2`
|
2020-11-02 09:40:54 +01:00 |
|
Tom Hvitved
|
e89a463b25
|
C#: Fix bad join-order in commonSubTypeGeneral/2
|
2020-11-01 20:08:14 +01:00 |
|
Rasmus Lerchedahl Petersen
|
0240670d62
|
Python: import frameworks
|
2020-11-01 18:02:36 +01:00 |
|
Rasmus Lerchedahl Petersen
|
babcf7acd9
|
Python: add two implementations of PEP249
|
2020-11-01 16:01:05 +01:00 |
|
luchua-bc
|
78d7fe2fbb
|
Detect rethrowing unprocessed exceptions in catch clause
|
2020-11-01 02:13:50 +00:00 |
|
luchua-bc
|
c89ebeeb5e
|
Text changes
|
2020-11-01 00:39:00 +00:00 |
|
Mathias Vorreiter Pedersen
|
6d0783a3bd
|
Python: Make sure that expected values with tag mimetype is wrapped in quotes if the value contains a space.
|
2020-10-31 18:13:12 +01:00 |
|
Mathias Vorreiter Pedersen
|
fc80ef2ed8
|
C++: Sync identical file.
|
2020-10-31 18:02:12 +01:00 |
|
Mathias Vorreiter Pedersen
|
870ed0039b
|
Python: Allow single quote strings and accept test changes.
|
2020-10-31 18:01:55 +01:00 |
|
Mathias Vorreiter Pedersen
|
0bc4d52d66
|
Python: Update more tests annotations. It looks like we need to allow single-quote strings to support the existing Python use-cases, but let's do that in the next commit.
|
2020-10-31 17:40:19 +01:00 |
|
Mathias Vorreiter Pedersen
|
ed9ad8b5e3
|
Merge branch 'main' into better-syntax-for-false-positives-and-negatives-inline-expectation
|
2020-10-31 16:52:16 +01:00 |
|
luchua-bc
|
7ac3fb41d5
|
Clean up query and test files
|
2020-10-31 13:37:36 +00:00 |
|
Dave Bartolomeo
|
69dee154f3
|
Fix PR feedback
|
2020-10-31 09:03:51 -04:00 |
|
Arthur Baars
|
f94b5ae412
|
Update QL code generator
|
2020-10-31 14:03:26 +01:00 |
|
Arthur Baars
|
1b502c161e
|
Add Locations library and move language independent files to 'codeql'
|
2020-10-31 11:51:01 +01:00 |
|
Arthur Baars
|
63ca8212f6
|
Limit string sizes to 1MB
|
2020-10-31 11:36:01 +01:00 |
|
Arthur Baars
|
f265ccef59
|
TrapWriter: add global ID caching and populate folders
|
2020-10-31 11:35:57 +01:00 |
|
Arthur Baars
|
0de8b0c069
|
Add TrapWriter::comment
|
2020-10-31 11:35:22 +01:00 |
|
Arthur Baars
|
748dee64ae
|
Escape label keys
|
2020-10-31 11:35:22 +01:00 |
|
Arthur Baars
|
57842e8a87
|
Add TrapWriter
|
2020-10-31 11:35:16 +01:00 |
|
luchua-bc
|
756db4c03a
|
Simplify the query and add more test cases
|
2020-10-31 01:33:24 +00:00 |
|
Taus
|
ce00d58329
|
Merge pull request #4584 from yoff/python-subclass-pattern
Python: Use subclass pattern for Models
|
2020-10-31 00:16:22 +01:00 |
|
Rasmus Lerchedahl Petersen
|
ae3227fc33
|
Python: initial sketch
|
2020-10-31 00:10:49 +01:00 |
|
Rasmus Lerchedahl Petersen
|
63cbc01c32
|
Python: Use subclass pattern for Models
|
2020-10-30 22:29:38 +01:00 |
|
CodeQL CI
|
4a59e69722
|
Merge pull request #4564 from asgerf/js/react-hooks
Approved by esbena
|
2020-10-30 21:00:31 +00:00 |
|
Taus Brock-Nannestad
|
f903e4ffbe
|
Python: Promote experimental queries
DO NOT MERGE
Also adds performance fix to `python.qll`.
|
2020-10-30 19:40:56 +01:00 |
|
Taus
|
ecc52a1bb9
|
Merge pull request #4541 from RasmusWL/python-port-reflected-xss
Python: Port reflected XSS query
|
2020-10-30 19:17:33 +01:00 |
|
luchua-bc
|
67af9b0f3e
|
Add comments and update JavaDocs of GenericServlet using the source JAR
|
2020-10-30 17:05:53 +00:00 |
|
Rasmus Lerchedahl Petersen
|
80360450de
|
Merge branch 'main' of github.com:github/codeql into RasmusWL-python-port-reflected-xss
|
2020-10-30 17:56:36 +01:00 |
|
Nick Rolfe
|
83667ab89a
|
Merge pull request #19 from github/locations
Fix location handling to match common db schema requirements
|
2020-10-30 16:56:34 +00:00 |
|
Dave Bartolomeo
|
be180aac25
|
Fixup after merge
|
2020-10-30 12:52:58 -04:00 |
|
Arthur Baars
|
c2c197dba5
|
Merge pull request #21 from github/aibaars/files-qll
Basic FileSystem.qll
|
2020-10-30 17:50:54 +01:00 |
|
Taus
|
146787bb55
|
Merge pull request #4539 from yoff/python-port-path-injection
Python: port path injection
|
2020-10-30 17:46:51 +01:00 |
|
luchua-bc
|
93d1393ded
|
Add error-page check
|
2020-10-30 16:45:56 +00:00 |
|
Rasmus Lerchedahl Petersen
|
ef9999a4a1
|
Python: fix test annotation
|
2020-10-30 17:43:56 +01:00 |
|
Rasmus Lerchedahl Petersen
|
37ad59a92a
|
Python: subclas of known subclasses
|
2020-10-30 17:37:54 +01:00 |
|
Dave Bartolomeo
|
ec398b2a67
|
Merge remote-tracking branch 'upstream/main' into work
|
2020-10-30 12:36:33 -04:00 |
|
yoff
|
a3cc9b6982
|
Update python/ql/src/experimental/semmle/python/frameworks/Flask.qll
Co-authored-by: Taus <tausbn@github.com>
|
2020-10-30 17:29:35 +01:00 |
|
Cornelius Riemenschneider
|
310975bf8d
|
Merge pull request #4581 from criemen/printast-stmtpexpr
C++: Add support for StmtExpr to Print AST.
|
2020-10-30 17:29:23 +01:00 |
|
Asger Feldthaus
|
c7667d372e
|
JS: Address review comments
|
2020-10-30 16:25:30 +00:00 |
|
Dave Bartolomeo
|
42373417e2
|
Merge from main
|
2020-10-30 12:02:56 -04:00 |
|
Mathias Vorreiter Pedersen
|
45b24a9bc8
|
Python: Update inline-expectation tests
|
2020-10-30 16:53:33 +01:00 |
|
Mathias Vorreiter Pedersen
|
6ac740a490
|
Python: Sync identical file
|
2020-10-30 16:53:17 +01:00 |
|
Mathias Vorreiter Pedersen
|
ee77e988b2
|
C++: Allow strings in inline-expectation tests
|
2020-10-30 16:49:14 +01:00 |
|
Cornelius Riemenschneider
|
e7d995313e
|
C++: Address review.
|
2020-10-30 16:30:57 +01:00 |
|