luchua-bc
|
195755d687
|
Revamp the query to be more selective
|
2021-01-05 00:04:08 +00:00 |
|
luchua-bc
|
496db4b42f
|
Factor isGetServletMethod into the servlet library
|
2021-01-04 16:14:13 +00:00 |
|
Rasmus Lerchedahl Petersen
|
8ceb33d3f7
|
Python: Also restrict StepSumary::step
|
2021-01-04 16:42:11 +01:00 |
|
Geoffrey White
|
01b204ea30
|
C++: Add a test case with a tainted integer.
|
2021-01-04 15:35:18 +00:00 |
|
Geoffrey White
|
7a3f9c7895
|
C++: Add a test (cleaned up) that was previously in the internal repo.
|
2021-01-04 15:35:18 +00:00 |
|
Jonathan Leitschuh
|
028e4756bb
|
Apply suggestions from code review
Co-authored-by: Anders Schack-Mulligen <aschackmull@users.noreply.github.com>
|
2021-01-04 10:13:52 -05:00 |
|
luchua-bc
|
c069a5b4c6
|
Factor private host regex into the networking library and enhance the query
|
2021-01-04 14:51:32 +00:00 |
|
Erik Krogh Kristensen
|
368603eefa
|
add change note
|
2021-01-04 15:23:52 +01:00 |
|
Tom Hvitved
|
7f25efd43f
|
Merge pull request #4858 from hvitved/csharp/merge-format-queries
C#: Merge queries `FormatInvalid.ql`, `FormatMissingArgument.ql`, and `FormatUnusedArgument.ql`
|
2021-01-04 14:53:34 +01:00 |
|
Tom Hvitved
|
1237e566d0
|
C#: Fix typo
|
2021-01-04 12:59:45 +01:00 |
|
Erik Krogh Kristensen
|
ce8cc2368b
|
improve precision of intersect
|
2021-01-04 11:55:51 +01:00 |
|
Mathias Vorreiter Pedersen
|
bb158f1857
|
C++: Add dataflow testcases that need flow through conflated memory.
|
2021-01-04 11:43:23 +01:00 |
|
Tom Hvitved
|
c1f822c83f
|
C#: Port SSA performance improvements from Java
|
2021-01-04 10:18:17 +01:00 |
|
Jonas Jensen
|
86194226e2
|
Merge pull request #4891 from MathiasVP/get-an-overload-perf-fix
C++: Fix join order in getAnOverload
|
2021-01-04 10:02:59 +01:00 |
|
Tom Hvitved
|
6d973d0103
|
Merge pull request #4857 from hvitved/csharp/expr-has-value
C#: Move `Expr::hasValue()` to `DotNet::Expr`
|
2021-01-04 10:02:45 +01:00 |
|
Mathias Vorreiter Pedersen
|
134982c5a9
|
C++: Respond to review comments.
|
2021-01-04 09:06:58 +01:00 |
|
Jonathan Leitschuh
|
54950c2f42
|
Add MethodAccessSystemGetProperty predicate
|
2021-01-01 20:07:45 -05:00 |
|
Mathias Vorreiter Pedersen
|
258d04178f
|
C++: Replace SkippableInstruction with local flow steps.
|
2020-12-30 13:39:24 +01:00 |
|
Mathias Vorreiter Pedersen
|
454605b7b1
|
C++: Fix join order in getAnOverload.
|
2020-12-30 10:34:26 +01:00 |
|
neal1991
|
380d15eabe
|
fix for the dead link, #4885
|
2020-12-28 10:28:50 +08:00 |
|
ihsinme
|
0c7381a3b0
|
Add files via upload
|
2020-12-26 20:45:11 +03:00 |
|
ihsinme
|
cd7c47ea39
|
Add files via upload
|
2020-12-26 20:43:25 +03:00 |
|
luchua-bc
|
ffe9d4a310
|
Sensitive GET Query
|
2020-12-26 16:51:30 +00:00 |
|
Shati Patel
|
8c7245113d
|
Change ordering of sidebar TOC to match index file
|
2020-12-23 17:16:56 +00:00 |
|
Shati Patel
|
050b15103e
|
Convert remaining notes to pull-quote directives
|
2020-12-23 17:13:24 +00:00 |
|
Shati Patel
|
dc528767f6
|
Don't turn arrow into ▶ emoji
|
2020-12-23 16:47:37 +00:00 |
|
Shati Patel
|
ff8e9e6adf
|
Fix code block in other CodeQL docs
|
2020-12-23 12:41:46 +00:00 |
|
madneal
|
583395d862
|
fix LineComment and BlockComment level
|
2020-12-23 19:49:30 +08:00 |
|
neal1991
|
623de3df41
|
the level of HTMLHtmlCommentStart and HtmlCommentEnd should be same
|
2020-12-23 19:18:13 +08:00 |
|
Shati Patel
|
f1d8d9414f
|
Fix code blocks in QL language reference
|
2020-12-23 10:49:23 +00:00 |
|
Shati Patel
|
a14f53c02f
|
Set default highlighting language to "none" globally
Otherwise Python is the default
|
2020-12-23 10:29:10 +00:00 |
|
Shati Patel
|
c2fdb47abe
|
Docs: Fix CSS for "pull-quotes"
|
2020-12-23 07:30:11 +00:00 |
|
Mathias Vorreiter Pedersen
|
6545d0b53a
|
C++: Move conflation check into each disjunct.
|
2020-12-22 16:56:30 +01:00 |
|
Mathias Vorreiter Pedersen
|
d2d8377e88
|
Update cpp/ql/src/semmle/code/cpp/ir/dataflow/internal/DataFlowUtil.qll
Co-authored-by: Jonas Jensen <jbj@github.com>
|
2020-12-22 16:34:53 +01:00 |
|
Erik Krogh Kristensen
|
44571ffeea
|
use the full ascii set instead of a few chosen chars
|
2020-12-22 16:00:23 +01:00 |
|
Mathias Vorreiter Pedersen
|
b95cf94824
|
Update cpp/ql/src/semmle/code/cpp/ir/dataflow/internal/DataFlowUtil.qll
Co-authored-by: Jonas Jensen <jbj@github.com>
|
2020-12-22 15:57:34 +01:00 |
|
Erik Krogh Kristensen
|
303408b774
|
remove duplicate char
|
2020-12-22 15:48:24 +01:00 |
|
Erik Krogh Kristensen
|
354954c80c
|
changes based on review
|
2020-12-22 15:41:06 +01:00 |
|
Mathias Vorreiter Pedersen
|
ec35e0d518
|
C++: Respond to review comments.
|
2020-12-22 15:22:33 +01:00 |
|
Rasmus Wriedt Larsen
|
3094aedf14
|
Python: Fix regression in ConceptTests
I accidentially deleted that line :D
|
2020-12-22 14:42:53 +01:00 |
|
Erik Krogh Kristensen
|
530a4aea35
|
Merge branch 'main' into shellSanitizer
|
2020-12-22 13:57:15 +01:00 |
|
Erik Krogh Kristensen
|
f7f88689c4
|
use strings in isTypeofGard
|
2020-12-22 13:55:32 +01:00 |
|
CodeQL CI
|
2bb96369f1
|
Merge pull request #4868 from erik-krogh/boundShell
Approved by esbena
|
2020-12-22 03:35:42 -08:00 |
|
CodeQL CI
|
7c6b4d7324
|
Merge pull request #4865 from esbena/js/fix-execa-model
Approved by erik-krogh
|
2020-12-22 03:32:26 -08:00 |
|
Rasmus Wriedt Larsen
|
dc0d940331
|
Python: Ensure all concept tests ignore irrelevant results
Since this was causing a CI error.
also changed things a bit so we do it in a consistent way :)
|
2020-12-22 11:32:42 +01:00 |
|
Rasmus Wriedt Larsen
|
bc4a0bcbeb
|
Python: Split request handler / route setup concept tests
Not doing so earlier was just a mistake.
|
2020-12-22 11:31:20 +01:00 |
|
Erik Krogh Kristensen
|
da9a4e5267
|
add test
|
2020-12-22 11:22:25 +01:00 |
|
Erik Krogh Kristensen
|
b8b5aef5f4
|
recognize Object.defineProperty(obj, prop, {get: func}) as a property-write
|
2020-12-22 11:21:41 +01:00 |
|
Erik Krogh Kristensen
|
6a9089b15e
|
recognize bound functions in js/shell-command-constructed-from-input
|
2020-12-22 11:20:34 +01:00 |
|
CodeQL CI
|
67d0f4d938
|
Merge pull request #4866 from esbena/js/add-tests-for-examples
Approved by erik-krogh
|
2020-12-22 02:04:47 -08:00 |
|