Arthur Baars
|
2124247d5e
|
CFG: add samples of all syntactical constructs to cfg.rb
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
ebf3a31224
|
CFG: don't handle rescue, else, ensure for now
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
97d0220ffd
|
CFG: Model nodes with simple flow
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
3807e1be38
|
CFG: flow for rescue-modifier
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
d619bdd8f9
|
CFG: Completions: fix definition of boolean constants
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
6c579ff608
|
CFG: link heredoc start to its body
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
49d11b1e09
|
CFG: don't hide Class and Module nodes
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
0852068bcd
|
CFG: make lambda a CFG entry point
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
01066ea3bb
|
CFG: case expression
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
2f238280dc
|
CFG: model if-modifier and unless
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
5d6e77be28
|
CFG: model while, until and variants
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
6660cb4417
|
CFG: for-in loop
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
165b2b37dc
|
Treat for variables and exception variables as declarations
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
b60ea74e8a
|
Treat conditional expressions as if-then-else
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
97fab0d18b
|
Assignments evaluate right-hand-side first
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
465c266b8a
|
Classes and module are not CfgScopes
|
2020-12-07 13:11:21 +01:00 |
|
Arthur Baars
|
0959a4675f
|
Merge pull request #65 from github/aibaars/dup-code
Add duplicate code tables to dbscheme
|
2020-12-07 13:10:52 +01:00 |
|
Arthur Baars
|
4c699fcb32
|
Add duplicate code tables to dbscheme
|
2020-12-07 13:06:26 +01:00 |
|
Arthur Baars
|
0a38d6801c
|
Address review comments
|
2020-12-07 12:53:45 +01:00 |
|
Cornelius Riemenschneider
|
354adf363e
|
Merge pull request #4787 from github/RasmusWL-patch-1
C++: Minor test README fixes
|
2020-12-07 12:42:55 +01:00 |
|
Asger Feldthaus
|
04f51bef5e
|
JS: Add missing qldoc
|
2020-12-07 10:52:38 +00:00 |
|
Rasmus Wriedt Larsen
|
9e7d5b3a9c
|
C++: Minor test README fixes
|
2020-12-07 11:52:18 +01:00 |
|
Asger Feldthaus
|
f96c425a72
|
JS: Deny -> block
|
2020-12-07 10:50:01 +00:00 |
|
Asger Feldthaus
|
254ac7f963
|
JS: Fix TypeofCheck
|
2020-12-07 10:46:00 +00:00 |
|
Tom Hvitved
|
6a55a22f18
|
Merge pull request #4781 from hvitved/csharp/persisten-cookie-tests
C#: Add tests for `PersistentCookie.ql`
|
2020-12-07 11:37:16 +01:00 |
|
Asger Feldthaus
|
0496642b0b
|
JS: Add test for captured flow into callback
|
2020-12-07 10:34:27 +00:00 |
|
Asger Feldthaus
|
355cfaaf42
|
JS: Autoformat
|
2020-12-07 10:16:39 +00:00 |
|
Asger Feldthaus
|
1b0bec9143
|
JS: Remove magic from barrier guard predicates
|
2020-12-07 10:16:39 +00:00 |
|
Asger Feldthaus
|
fe86465a0b
|
JS: Refactor store/load flow a bit
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
f132b4a279
|
JS: Add type confusion sink for prototype pollution checks
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
e10a22ec26
|
JS: Restrict size of some predicates
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
daab3c1437
|
JS: Add tests and fix some bugs
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
0a7513fdfb
|
JS: Move and rename test cases as well
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
479dcf56ad
|
JS: Update to use more inclusive language
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
544b3d9631
|
JS: Change note
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
e42ca881a3
|
JS: Update security suite after move to CWE-915
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
ca38a1c8b9
|
JS: Update CWE tags
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
25161ed338
|
JS: Move all prototype pollution queries to CWE-915
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
877b4b0752
|
JS: Move and rename other prototype pollution queries
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
972c4d61e5
|
JS: Add PrototypePollutingAssignment
|
2020-12-07 10:16:38 +00:00 |
|
Asger Feldthaus
|
ef52c46aed
|
JS: Add spread step in TaintedObject
|
2020-12-07 10:16:37 +00:00 |
|
Sauyon Lee
|
b5ec26d935
|
Merge pull request #4744 from github/sauyon/html-refactor
JavaScript: Factor out HTML extractor
|
2020-12-07 02:06:42 -08:00 |
|
Sauyon Lee
|
17e450f227
|
JavaScript: Factor out HTML extractor
|
2020-12-06 05:04:10 -08:00 |
|
Tom Hvitved
|
3531dde032
|
C#: Simplify FinallySplit::toString()
|
2020-12-05 20:16:11 +01:00 |
|
Tom Hvitved
|
2f1057383e
|
C#: Add missing CFG edges for nested finally blocks
|
2020-12-05 20:12:11 +01:00 |
|
Geoffrey White
|
998eaf90ee
|
C++: Run through updated autoformat.
|
2020-12-04 18:53:24 +00:00 |
|
James Fletcher
|
45a4d5beb9
|
Update docs/codeql/codeql-language-guides/abstract-syntax-tree-classes-for-working-with-go-programs.rst
|
2020-12-04 17:15:51 +00:00 |
|
james
|
d0a2582673
|
remove mention of odasa from javascript article
|
2020-12-04 17:15:51 +00:00 |
|
james
|
d19d23cc5e
|
typo on landing page
|
2020-12-04 17:15:51 +00:00 |
|
james
|
f3642fcec2
|
fix indentation in cpp table
|
2020-12-04 17:15:51 +00:00 |
|