Rebecca Valentine
|
be86c9c066
|
Python: ObjectAPI to ValueAPI: IterReturnsNonSelf: ObjectAPI.qll: Explains why getAnInferredReturnType is weird for builtins
|
2020-04-03 15:16:16 -07:00 |
|
Rebecca Valentine
|
64b17888e5
|
Python: ObjectAPI to ValueAPI: IterReturnsNonSelf: ObjectAPI.qll: Reorganizes getAnInferredReturnType()
|
2020-04-03 15:14:25 -07:00 |
|
Robert Marsh
|
316d932829
|
Merge pull request #3198 from MathiasVP/valuenumbering-provider-new-file
C++/C#: Prevent accidental import of ValueNumberPropertyProvider
|
2020-04-03 13:31:11 -07:00 |
|
Grzegorz Golawski
|
1d8da905ac
|
Make the test runnable via codeql test run
|
2020-04-03 21:44:13 +02:00 |
|
ggolawski
|
79d7ea36ff
|
Update java/ql/src/experimental/Security/CWE/CWE-016/SpringBootActuators.qll
Co-Authored-By: Anders Schack-Mulligen <aschackmull@users.noreply.github.com>
|
2020-04-03 21:36:34 +02:00 |
|
Jonas Jensen
|
bb3616e4c4
|
C++: Add example for globalVarFromId
|
2020-04-03 17:51:35 +02:00 |
|
semmle-qlci
|
a8098a2b2d
|
Merge pull request #3197 from erik-krogh/NormalPathSanitizer
Approved by asgerf
|
2020-04-03 16:33:18 +01:00 |
|
Jonas Jensen
|
5822cd7b84
|
C++: Put paths in the remaining LGTM-suite queries
|
2020-04-03 17:10:47 +02:00 |
|
Jonas Jensen
|
3ec1f691c2
|
C++: First query with flow-paths through globals
|
2020-04-03 16:45:00 +02:00 |
|
Jonas Jensen
|
aaebe3687e
|
C++: Fix copy-paste error in convertedExprNode
|
2020-04-03 16:37:23 +02:00 |
|
Jonas Jensen
|
469bdae9b2
|
C++: More helpful toString for def. by ref. node
|
2020-04-03 16:37:23 +02:00 |
|
Jonas Jensen
|
36da2d1dae
|
C++: Manipulate the source end of paths too
Without this, we get duplicate alerts in some cases and
unnatural-looking source nodes in other cases. The source nodes were
often `Conversion`s.
|
2020-04-03 16:37:23 +02:00 |
|
Jonas Jensen
|
e916f07a8e
|
C++: Formatting fixups
|
2020-04-03 15:52:13 +02:00 |
|
Jonas Jensen
|
427815d3d1
|
C++: taintedWithPath QLDoc + simplification
|
2020-04-03 15:52:13 +02:00 |
|
Jonas Jensen
|
3653627650
|
C++: Let configuration class extend singleton
|
2020-04-03 15:52:13 +02:00 |
|
Erik Krogh Kristensen
|
9c2053168b
|
writing out the truth table for DotDotSlashPrefixRemovingReplace
|
2020-04-03 15:46:47 +02:00 |
|
Tom Hvitved
|
8d81b885c6
|
C#: Unset Platform env variable when invoking vcvarsall.bat
|
2020-04-03 14:47:34 +02:00 |
|
semmle-qlci
|
676da02118
|
Merge pull request #3192 from asger-semmle/js/missing-await-not-delete
Approved by esbena
|
2020-04-03 13:21:48 +01:00 |
|
Shati Patel
|
a93aafcab5
|
Merge pull request #3194 from shati-patel/50-intro-to-ql
Docs: Include "Introduction to QL" in tutorial topic
|
2020-04-03 12:12:00 +01:00 |
|
Tom Hvitved
|
4e2d6c0250
|
C#: Add missing QL doc
|
2020-04-03 12:45:56 +02:00 |
|
Mathias Vorreiter Pedersen
|
c54cddead1
|
C++: Include PrintValueNumbering in testcase
|
2020-04-03 12:42:06 +02:00 |
|
Calum Grant
|
adde52d33c
|
C#: Add missing files
|
2020-04-03 11:22:50 +01:00 |
|
Jonas Jensen
|
16c7a35b1c
|
Merge pull request #3195 from geoffw0/taintstring
C++: Model taint flow through std::string constructor and c_str()
|
2020-04-03 12:05:07 +02:00 |
|
Erik Krogh Kristensen
|
94751c1b31
|
dst can be relative for "../" replace call
|
2020-04-03 11:08:31 +02:00 |
|
Calum Grant
|
6a26a6542a
|
C#: Remove a function.
|
2020-04-03 09:42:25 +01:00 |
|
semmle-qlci
|
dc774e0eac
|
Merge pull request #3166 from erik-krogh/DeadLocal
Approved by asgerf
|
2020-04-03 09:36:20 +01:00 |
|
Tom Hvitved
|
08fbd1d2ad
|
C#: Update change notes
|
2020-04-03 10:25:46 +02:00 |
|
Geoffrey White
|
73bfd819d9
|
C++: Rename classes.
|
2020-04-03 09:23:31 +01:00 |
|
Geoffrey White
|
1bcf187c3e
|
C++: Rename Strings.qll -> StdString.qll.
|
2020-04-03 09:17:33 +01:00 |
|
Mathias Vorreiter Pedersen
|
1e73528102
|
C++/C#: Add synchronization
|
2020-04-03 10:08:00 +02:00 |
|
Mathias Vorreiter Pedersen
|
0b12c1519b
|
C++/C#: Sync identical files
|
2020-04-03 10:06:37 +02:00 |
|
Mathias Vorreiter Pedersen
|
0f70944a5b
|
C++: Move ValueNumberPropertyProvider into its own file to prevent accidental imports
|
2020-04-03 09:55:41 +02:00 |
|
Erik Krogh Kristensen
|
e46cde17a1
|
add a "../" removing taint-step for js/path-injection
|
2020-04-03 09:42:05 +02:00 |
|
Shati Patel
|
b267df0077
|
Address review comments + make article intro consistent with map topic
|
2020-04-03 00:02:14 +01:00 |
|
Robert Marsh
|
a8e191248e
|
Merge branch 'master' into rdmarsh/cpp/ir-flow-through-outparams
Merge IR SSA test additions
|
2020-04-02 15:30:20 -07:00 |
|
Grzegorz Golawski
|
6ca963a8c8
|
Fix
|
2020-04-03 00:30:02 +02:00 |
|
Grzegorz Golawski
|
f05b2af69d
|
Move to experimental
|
2020-04-03 00:27:51 +02:00 |
|
Asger Feldthaus
|
ffbbdd7779
|
JS: Autoformat
|
2020-04-02 23:04:24 +01:00 |
|
Asger Feldthaus
|
93971e9433
|
JS: Make local flow not depend on SourceNode
|
2020-04-02 23:03:29 +01:00 |
|
Asger Feldthaus
|
346867f425
|
JS: Remove Import->SourceNode dependency from AMD
|
2020-04-02 23:03:29 +01:00 |
|
Asger Feldthaus
|
3804d3fcfd
|
JS: Remove Import->SourceNode dependency from lazy cache
|
2020-04-02 23:03:20 +01:00 |
|
Robert Marsh
|
fd915bb5b1
|
C++: fix join order in IR virtual dispatch
|
2020-04-02 14:56:11 -07:00 |
|
Grzegorz Golawski
|
cffe89f652
|
Merge branch 'master' into java-spring-boot-actuators
|
2020-04-02 22:06:25 +02:00 |
|
Calum Grant
|
9481fada51
|
C#: Address review comments.
|
2020-04-02 20:29:45 +01:00 |
|
Rebecca Valentine
|
2a7b77c0e1
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: Adds new version of FunctionObject.qll
|
2020-04-02 12:18:07 -07:00 |
|
Rebecca Valentine
|
161613f59e
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: Adds new version of Exceptions.qll
|
2020-04-02 12:17:14 -07:00 |
|
Rebecca Valentine
|
6517feda9a
|
Python: ObjectAPI to ValueAPI: WrongNumberArgumentsInCall: Adds new version of ObjectsAPI.qll
|
2020-04-02 11:56:15 -07:00 |
|
Geoffrey White
|
c9ec30fa2a
|
C++: Update use of deprecated methods.
|
2020-04-02 19:49:42 +01:00 |
|
Geoffrey White
|
e9132d833c
|
C++: Autoformat.
|
2020-04-02 19:49:42 +01:00 |
|
Geoffrey White
|
ab716ebe75
|
C++: Change note.
|
2020-04-02 19:49:42 +01:00 |
|