Tamas Vajk
183926d9fd
C#: Add QL classes for function pointer type/invocation, tests
2021-01-19 17:26:31 +01:00
Tamas Vajk
876123315d
C#: Extract function pointers
2021-01-19 17:26:31 +01:00
Rasmus Lerchedahl Petersen
77da4b0106
Python: Remove absolute line numbers
...
- Use relative line numbers in flow test
- Elide line numbers in routing test (new concept)
2021-01-19 17:05:42 +01:00
yo-h
91fa12b1be
Java: add change note for struts.xml extraction
2021-01-19 10:19:18 -05:00
Rasmus Wriedt Larsen
9d8925ae6a
Python: Extend url-redirect tests
...
Specifically to show how it currently handles prefixing user-input with known
constant.
I changed test to be Python 3 only since I wanted to use f-string.
2021-01-19 15:37:41 +01:00
Rasmus Wriedt Larsen
830f8bfef6
Python: Add change-note for Flask class based view handlers
...
For https://github.com/github/codeql/pull/4944
2021-01-19 15:09:04 +01:00
Rasmus Wriedt Larsen
ab607b8030
Python: Add redirect modeling for Django
2021-01-19 14:45:41 +01:00
Rasmus Wriedt Larsen
aea974ee0c
Python: Add redirect modeling for Flask
2021-01-19 14:44:50 +01:00
Rasmus Wriedt Larsen
501e510622
Python: Add redirect modeling tests (flask/django)
2021-01-19 14:43:25 +01:00
Rasmus Wriedt Larsen
efb872ad1e
Python: Add HttpRedirectResponse concept
2021-01-19 14:35:19 +01:00
Jonas Jensen
24947f27b4
Merge pull request #4750 from geoffw0/modelclasses
...
C++: Model classes in StdString.qll.
2021-01-19 12:51:30 +01:00
CodeQL CI
fbab8f8539
Merge pull request #4972 from Marcono1234/marcono1234/qldoc-link-fixes
...
Approved by shati-patel
2021-01-19 03:07:41 -08:00
Shati Patel
47470e08c3
Add QLDoc link, suggested by @Marcono1234
2021-01-19 10:54:17 +00:00
Geoffrey White
cff56350e0
C++: Fix getClassAndName parameter name.
2021-01-19 10:34:25 +00:00
Tamás Vajk
e2af176727
Merge pull request #4974 from tamasvajk/feature/cleanup-db
...
C#: Remove leftover DB upgrade folder
2021-01-19 11:30:07 +01:00
Tom Hvitved
0674881ffd
C#: Do not rely on BasicBlock member predicates from SsaImplSpecific
2021-01-19 10:52:50 +01:00
Tom Hvitved
2a8060102d
C#: Split up SSA implementation
2021-01-19 10:52:50 +01:00
Tamás Vajk
b228b7d17b
Merge pull request #4975 from tamasvajk/feature/fix-build-error
...
C#: Fix build error in RelationalPattern
2021-01-19 10:10:53 +01:00
Tamas Vajk
be7d458dc6
C#: Fix build error in RelationalPattern
2021-01-19 09:49:51 +01:00
Geoffrey White
b4a5346dc3
C++: It turns out .getTemplate() is not necessary.
2021-01-19 08:46:53 +00:00
Geoffrey White
f8a1fb1c35
C++: Apply the new pattern where it doesn't matter for performance as well, for consistency.
2021-01-19 08:46:53 +00:00
Geoffrey White
bfef1a200e
C++: Apply the new pattern in other parts of StdString.qll where it matters.
2021-01-19 08:46:53 +00:00
Geoffrey White
b8e6ad8922
C++: Introduce new predicate for better performance in models.
2021-01-19 08:46:52 +00:00
Geoffrey White
a5632b272e
C++: Fix performance issue in hasTaintFlow / hasDataFlow.
2021-01-19 08:46:52 +00:00
Tamas Vajk
6cafb281b5
C#: Remove leftover DB upgrade folder
2021-01-19 09:45:34 +01:00
Tamás Vajk
b775eb4cf7
Merge pull request #4789 from tamasvajk/feature/csharp9-relational-pattern2
...
C#: Relational patterns
2021-01-19 09:38:57 +01:00
Tom Hvitved
25095f919e
Merge pull request #4962 from hvitved/csharp/nullability-extraction
...
C#: Improved extraction of type nullability
2021-01-19 09:34:38 +01:00
Rasmus Lerchedahl Petersen
42fa3bdb81
Python: Only consider the closest SOURCE
...
(in use-use flow) a source
2021-01-19 09:13:17 +01:00
Esben Sparre Andreasen
3015dcd310
JS: reformulate js/server-crash. Support promises and shorter paths.
2021-01-19 09:08:52 +01:00
Anders Schack-Mulligen
b620e02000
Merge pull request #4973 from Marcono1234/patch-1
...
Add ArrayInit.getSize(), improve documentation
2021-01-19 09:06:45 +01:00
Anders Schack-Mulligen
dde8d320f3
Apply suggestions from code review
...
Minor qldoc fixes.
2021-01-19 08:24:24 +01:00
Rasmus Lerchedahl Petersen
bd3de23c6e
Python: Remove some unhelpful store steps
2021-01-19 00:05:10 +01:00
Marcono1234
703336a77f
Add ArrayInit.getSize(), improve documentation
2021-01-18 16:44:53 +01:00
Marcono1234
e9aa63b670
Fix broken links to QLDoc specification
2021-01-18 16:18:45 +01:00
Rasmus Wriedt Larsen
8e5557eca3
Python: Avoid duplicated route-setup in django
...
When using `django.conf.urls.url` with Django 2+
2021-01-18 16:18:29 +01:00
Tamas Vajk
d05d4e22ad
C#: Fix namespace extraction of NoMetadataHandleType
2021-01-18 16:14:37 +01:00
Tamas Vajk
1b285ee792
C#: Hardcode well-known underlying enum types
2021-01-18 16:14:37 +01:00
Rasmus Lerchedahl Petersen
bfc6660795
Python: Remember to update test expectations
2021-01-18 15:00:06 +01:00
Erik Krogh Kristensen
01900d7ca2
remove false positive due to "\n" not being in the relevant relation
2021-01-18 14:47:29 +01:00
Asger Feldthaus
deca7f3cd6
JS: Add change note
2021-01-18 13:46:43 +00:00
CodeQL CI
fc2fe6cccb
Merge pull request #4928 from esbena/js/rewrite-multi-sanitization
...
Approved by asgerf
2021-01-18 05:11:42 -08:00
Asger Feldthaus
fbb5d14263
JS: Update angular test output
2021-01-18 12:19:09 +00:00
Asger Feldthaus
bb6bd9168e
JS: Update HTML TRAP tests output
2021-01-18 12:19:09 +00:00
Asger Feldthaus
2a7b4487f1
JS: More auto format
2021-01-18 12:19:09 +00:00
Asger Feldthaus
d8c9dba990
JS: Autoformat
2021-01-18 12:19:09 +00:00
Asger Feldthaus
5f4016be76
JS: Cache Import.getImportedModule
2021-01-18 12:19:09 +00:00
Asger Feldthaus
c5f2c04f16
JS: Add upgrade script
2021-01-18 12:19:09 +00:00
Asger Feldthaus
1b4a4ea2fa
JS: Bump extractor version string
2021-01-18 12:19:09 +00:00
Asger Feldthaus
44c5d36e83
JS: Simple RxJS model
2021-01-18 12:19:09 +00:00
Asger Feldthaus
00cd0644f0
JS: Implement getAResponseDataNode
2021-01-18 12:19:09 +00:00