Tamas Vajk
|
a273f88a51
|
Add support for explicitly implemented indexers
|
2021-06-23 09:26:53 +02:00 |
|
Tamas Vajk
|
481ae0ff19
|
Exclude default struct constructors from stubs
|
2021-06-23 09:26:53 +02:00 |
|
Tamas Vajk
|
3f0a158b3c
|
Add query to select all public declarations from target assemblies
|
2021-06-23 09:26:53 +02:00 |
|
Tamas Vajk
|
bfa9bf33c0
|
C#: Add nuget based stubbing script
|
2021-06-23 09:26:53 +02:00 |
|
Erik Krogh Kristensen
|
fa02651542
|
add taint step through the strip-ansi library
|
2021-06-23 09:13:03 +02:00 |
|
Erik Krogh Kristensen
|
fe76341820
|
add taint step through the chalk library
|
2021-06-23 09:12:48 +02:00 |
|
Erik Krogh Kristensen
|
053d9b5564
|
add taint step through the kleur library
|
2021-06-23 09:12:25 +02:00 |
|
Tom Hvitved
|
1dde5b8ef9
|
AST synthesis: Move location information into a separate predicate
|
2021-06-23 08:46:07 +02:00 |
|
Tamas Vajk
|
9d004ec2d5
|
Handle case when changes had been reported, and then removed
|
2021-06-23 08:25:20 +02:00 |
|
Tamas Vajk
|
5657c215e9
|
Change workflow step name
|
2021-06-23 08:25:20 +02:00 |
|
Tamas Vajk
|
a165cde808
|
Compute framework coverage diff in artifacts job
|
2021-06-23 08:25:20 +02:00 |
|
Tamas Vajk
|
d6361d8500
|
Use string interpolation
|
2021-06-23 08:23:44 +02:00 |
|
Tamas Vajk
|
12e4ad2640
|
Fix code quality issues
|
2021-06-23 08:23:44 +02:00 |
|
Tamas Vajk
|
d28fd363f9
|
Fix string vs int ID comparison
|
2021-06-23 08:23:44 +02:00 |
|
Tamas Vajk
|
801007357f
|
Only post comment with framework coverage change if it changed or wasn't done before
|
2021-06-23 08:23:44 +02:00 |
|
Tamas Vajk
|
0e91269a23
|
Refactor framework coverage job to download artifacts from python
|
2021-06-23 08:23:44 +02:00 |
|
Tamás Vajk
|
fa215bcda5
|
Merge pull request #6132 from tamasvajk/fix/coverage-commenter-base
Fix framework coverage commenter to use merge commit parent instead o…
|
2021-06-23 08:12:07 +02:00 |
|
CodeQL CI
|
37b66f9045
|
Merge pull request #6117 from asgerf/js/sharpen-match-calls
Approved by esbena
|
2021-06-22 22:52:37 -07:00 |
|
Erik Krogh Kristensen
|
6e2b92468f
|
add taint step through the slice-ansi library
|
2021-06-22 23:14:14 +02:00 |
|
Erik Krogh Kristensen
|
35c513d38a
|
add taint step through the cli-color library
|
2021-06-22 23:10:40 +02:00 |
|
Erik Krogh Kristensen
|
ec9c885908
|
add taint step through the cli-highlight library
|
2021-06-22 23:06:50 +02:00 |
|
Erik Krogh Kristensen
|
d114cdc6e5
|
add taint step through the colorette library
|
2021-06-22 23:02:01 +02:00 |
|
Erik Krogh Kristensen
|
e4427bb34a
|
add taint step through the wrap-ansi library
|
2021-06-22 22:59:03 +02:00 |
|
Erik Krogh Kristensen
|
626a653401
|
add taint step through the colors library
|
2021-06-22 22:55:15 +02:00 |
|
Erik Krogh Kristensen
|
a21ebbbe8f
|
add taint step through the ansi-colors library
|
2021-06-22 22:47:58 +02:00 |
|
Chris Smowton
|
9fd1606238
|
Model java.util.Optional
|
2021-06-22 21:17:22 +01:00 |
|
CodeQL CI
|
d719a1e627
|
Merge pull request #6114 from erik-krogh/promisify
Approved by esbena
|
2021-06-22 12:19:38 -07:00 |
|
Erik Krogh Kristensen
|
2ba2642c7a
|
add more template sinks for the js/code-injection query
|
2021-06-22 20:24:42 +02:00 |
|
CodeQL CI
|
bde1bb4030
|
Merge pull request #6126 from erik-krogh/dates
Approved by esbena
|
2021-06-22 10:35:51 -07:00 |
|
Arthur Baars
|
f18e5030e0
|
Address comments by @tausbn
|
2021-06-22 17:25:34 +02:00 |
|
Mathias Vorreiter Pedersen
|
90fe5c5aca
|
C++: Add change-note.
|
2021-06-22 17:13:07 +02:00 |
|
Mathias Vorreiter Pedersen
|
2e2673aff6
|
C++: Delete the experimental SqlPqxxTainted query.
|
2021-06-22 17:13:07 +02:00 |
|
Mathias Vorreiter Pedersen
|
440793b5ff
|
C++: Move the example from the experimental CWE-089 query into a test.
|
2021-06-22 17:13:06 +02:00 |
|
Mathias Vorreiter Pedersen
|
222cd41aa3
|
C++: Use the new SQL interface in 'Security.qll' and 'SqlTainted.ql'.
|
2021-06-22 17:13:06 +02:00 |
|
Mathias Vorreiter Pedersen
|
092fbd60d9
|
C++: Create a new SQL interface.
|
2021-06-22 17:13:06 +02:00 |
|
Alex Ford
|
dbf1805c8b
|
Merge pull request #196 from github/active-record-1
Start modelling some potential SQL fragment sinks in ActiveRecord
|
2021-06-22 16:05:26 +01:00 |
|
Taus
|
317c6867aa
|
Python: Fix sneaky semantic change
Co-authored-by: Rasmus Wriedt Larsen <rasmuswriedtlarsen@gmail.com>
|
2021-06-22 16:46:54 +02:00 |
|
jorgectf
|
78deec84fc
|
Upload main structure and initial tests
|
2021-06-22 16:41:08 +02:00 |
|
CodeQL CI
|
eb95dff746
|
Merge pull request #6129 from erik-krogh/ReDoSCWE
Approved by esbena
|
2021-06-22 07:02:39 -07:00 |
|
Arthur Baars
|
bedd790d33
|
Merge pull request #217 from github/aibaars-patch-2
Remove ad-hoc entries from query suite
|
2021-06-22 15:48:22 +02:00 |
|
Shati Patel
|
396de59ad7
|
Merge pull request #6131 from erik-krogh/toUnicodeDoc
mention the new `toUnicode` method in the QL language specification
|
2021-06-22 14:36:16 +01:00 |
|
Arthur Baars
|
f7eee915da
|
Remove ad-hoc queries
|
2021-06-22 15:35:30 +02:00 |
|
Erik Krogh Kristensen
|
062502fecc
|
add back support for util-promisifyall
|
2021-06-22 15:34:51 +02:00 |
|
Rasmus Wriedt Larsen
|
3b41c2f204
|
Python: Use new MethodCallNode in TaintTrackingPrivate
|
2021-06-22 15:12:35 +02:00 |
|
Rasmus Wriedt Larsen
|
0b767bb853
|
Merge branch 'main' into small-cleanups
|
2021-06-22 15:01:53 +02:00 |
|
Erik Krogh Kristensen
|
23e3062c3b
|
add toUnicode as a build-in
|
2021-06-22 12:07:47 +00:00 |
|
Erik Krogh Kristensen
|
b385dfd5a8
|
QL: add toUnicode as a build-in
|
2021-06-22 12:07:47 +00:00 |
|
Tamas Vajk
|
870e4125dc
|
Fix framework coverage commenter to use merge commit parent instead of (old) base repo SHA
|
2021-06-22 13:24:26 +02:00 |
|
Erik Krogh Kristensen
|
3bdd9f7a30
|
mention the new toUnicode method in the QL language specification
|
2021-06-22 13:13:30 +02:00 |
|
Tom Hvitved
|
38a38fd2c1
|
Merge pull request #6003 from hvitved/csharp/external-summaries
C#: CSV-based flow summaries
|
2021-06-22 12:59:44 +02:00 |
|