Mathias Vorreiter Pedersen
|
9de1fb7c18
|
Merge pull request #4222 from jbj/BlockStmt
C++/Java/JS: Rename Block -> BlockStmt
|
2020-09-09 10:02:37 +02:00 |
|
Erik Krogh Kristensen
|
cffe573d06
|
add taint-steps for underscore methods
|
2020-09-09 09:57:53 +02:00 |
|
Erik Krogh Kristensen
|
eb80705e99
|
add a taint-step for require("bluebird").mapSeries()
|
2020-09-09 09:57:53 +02:00 |
|
Erik Krogh Kristensen
|
b97c09a319
|
use tuples to simplify arrayFunctionTaintStep
|
2020-09-09 09:57:53 +02:00 |
|
Erik Krogh Kristensen
|
bb97829e1d
|
add a model for the ClientRequest new require("net").Socket()
|
2020-09-09 09:57:53 +02:00 |
|
Erik Krogh Kristensen
|
d5097d820d
|
support direct callbacks to require("net").createServer
|
2020-09-09 09:46:17 +02:00 |
|
Erik Krogh Kristensen
|
efe3fd7f1e
|
Update change-notes/1.26/analysis-javascript.md
Co-authored-by: Esben Sparre Andreasen <esbena@github.com>
|
2020-09-09 09:41:15 +02:00 |
|
Robert Marsh
|
30b5975274
|
C++: autoformat
|
2020-09-08 14:51:08 -07:00 |
|
Robert Marsh
|
eab1557e27
|
C++: output iterator flow via FlowVar
|
2020-09-08 14:09:57 -07:00 |
|
Robert Marsh
|
13c45b6664
|
C++: remove unnecessary parameter in FlowVar.qll
|
2020-09-08 13:51:58 -07:00 |
|
Robert Marsh
|
c8cdf68bf9
|
C++: Remove StdStringBeginEnd
|
2020-09-08 13:49:57 -07:00 |
|
Robert Marsh
|
703db0b9a6
|
C++: noisy output iterators in AST taint tracking
|
2020-09-08 13:45:23 -07:00 |
|
Robert Marsh
|
983f54f11a
|
C++: simple tests for vector output iterators
|
2020-09-08 13:27:41 -07:00 |
|
Mathias Vorreiter Pedersen
|
9659afdf09
|
C++: Accept more test changes
|
2020-09-08 22:25:33 +02:00 |
|
Robert Marsh
|
44bdf98217
|
C++: simplify and explain getExplicitlyConverted
|
2020-09-08 13:02:51 -07:00 |
|
Robert Marsh
|
65cc9888d5
|
Merge branch 'main' into rdmarsh2/cpp/explicit-conversion-perf
|
2020-09-08 12:29:34 -07:00 |
|
Robert Marsh
|
083a4b2abc
|
C++: handle non-casts in hasExplicitConversion
|
2020-09-08 12:28:16 -07:00 |
|
Mathias Vorreiter Pedersen
|
f025d09bf0
|
C++: Accept test changes
|
2020-09-08 19:12:00 +02:00 |
|
Mathias Vorreiter Pedersen
|
978b74f235
|
C++: Implement taint model for make_shared and make_unique
|
2020-09-08 19:11:48 +02:00 |
|
Mathias Vorreiter Pedersen
|
7ac5e84925
|
C++: Add make_shared and make_unique test cases
|
2020-09-08 19:03:54 +02:00 |
|
Geoffrey White
|
90c7a79272
|
C++: Fix the object/refs up.
|
2020-09-08 16:49:11 +01:00 |
|
Geoffrey White
|
5a3d41879a
|
C++: Change some of the taint flows to data flows.
|
2020-09-08 16:49:11 +01:00 |
|
Geoffrey White
|
8a143bec3a
|
C++: Reverse taint through operator<<.
|
2020-09-08 16:49:10 +01:00 |
|
Geoffrey White
|
b73ff8da63
|
C++: Flow through operator<<.
|
2020-09-08 16:49:10 +01:00 |
|
Jonas Jensen
|
911dec6f86
|
C++: SimpleRangeAnalysis (bool)x and !x support
|
2020-09-08 16:59:35 +02:00 |
|
Jonas Jensen
|
1b6da062cf
|
C++: RangeAnalysis tests for bool conversions
|
2020-09-08 16:58:35 +02:00 |
|
Arthur Baars
|
1f4028f4a0
|
Java: Add new SQL sinks for Hibernate versions 4 and 6
|
2020-09-08 16:26:13 +02:00 |
|
Erik Krogh Kristensen
|
4515d27ad2
|
Merge branch 'main' of https://github.com/github/codeql into pr/erik-krogh/4220
|
2020-09-08 14:10:15 +00:00 |
|
Erik Krogh Kristensen
|
38679b6d92
|
add change note
|
2020-09-08 14:04:40 +00:00 |
|
CodeQL CI
|
9879c6c204
|
Merge pull request #4184 from aschackmull/java/cleanup-queryinjection
Approved by aibaars
|
2020-09-08 14:52:17 +01:00 |
|
Anders Schack-Mulligen
|
442de2e2d2
|
Java: Add qldoc.
|
2020-09-08 15:09:39 +02:00 |
|
Anders Schack-Mulligen
|
86755215ad
|
Merge pull request #4225 from aschackmull/java/changenote-1.25
Java: Add 1.25 change notes.
v1.25.0
|
2020-09-08 14:50:46 +02:00 |
|
Anders Schack-Mulligen
|
02da80aa25
|
Java: Remove "New Queries" section.
|
2020-09-08 14:40:33 +02:00 |
|
Mathias Vorreiter Pedersen
|
5d14688848
|
Merge branch 'main' into mathiasvp/array-field-flow
|
2020-09-08 14:38:58 +02:00 |
|
Mathias Vorreiter Pedersen
|
41147d245d
|
C++: Accept test changes
|
2020-09-08 14:35:22 +02:00 |
|
Mathias Vorreiter Pedersen
|
faae2e782a
|
C++: Implement field flow for operator[] writes and pointer deref writes.
|
2020-09-08 14:35:09 +02:00 |
|
Rasmus Wriedt Larsen
|
2979f9813e
|
Python: Add missing change notes
I looked through PRs between rc/1.24 and rc/1.25 and added missing change notes for:
- https://github.com/github/codeql/pull/3314
- https://github.com/github/codeql/pull/3302
- https://github.com/github/codeql/pull/3212
- https://github.com/github/codeql/pull/3453
- https://github.com/github/codeql/pull/3407
- https://github.com/github/codeql/pull/3563
```
git log --grep="Merge pull request" --format=oneline rc/1.24..rc/1.25 -- python/
```
|
2020-09-08 14:27:12 +02:00 |
|
Anders Schack-Mulligen
|
b1e6e3a6f2
|
Java: Add 1.25 change notes.
|
2020-09-08 14:18:20 +02:00 |
|
Jonas Jensen
|
f92f84e3d4
|
Merge remote-tracking branch 'upstream/main' into BlockStmt
|
2020-09-08 14:09:46 +02:00 |
|
Nick Rolfe
|
075ce6edbf
|
Merge pull request #4178 from github/igfoo/48-coroutine-support-3
C++: Add initial support for coroutines operators
|
2020-09-08 12:44:24 +01:00 |
|
Tom Hvitved
|
4d0a1ee857
|
Address review comments
|
2020-09-08 12:54:12 +02:00 |
|
Jonas Jensen
|
0935d1e155
|
JS: Deprecate the Block class alias
|
2020-09-08 08:40:20 +02:00 |
|
Jonas Jensen
|
464d3630a2
|
Java: Rename Block -> BlockStmt
|
2020-09-08 08:40:20 +02:00 |
|
Jonas Jensen
|
ab90f06ddf
|
C++: Rename Block -> BlockStmt
|
2020-09-08 08:40:20 +02:00 |
|
Rajiv Shah
|
f168356181
|
C++: Allow .inc files to be included
|
2020-09-07 18:09:21 -04:00 |
|
Ian Lynagh
|
d49bc4ccda
|
C++: Tweak qldoc for coroutines
|
2020-09-07 20:39:11 +01:00 |
|
Ian Lynagh
|
4bf545548b
|
C++: Tweak to make qlformat happy
|
2020-09-07 20:37:01 +01:00 |
|
Ian Lynagh
|
86c58afa48
|
C++: Update stats for co_await/co_yield/co_return
|
2020-09-07 20:37:01 +01:00 |
|
Ian Lynagh
|
49f7baf5a9
|
C++: Add an upgrade script
|
2020-09-07 20:37:01 +01:00 |
|
Ian Lynagh
|
cca276be84
|
C++: Remove co_await range-based-for support for now
Initial impl won't support it
|
2020-09-07 20:37:01 +01:00 |
|