mirror of
https://github.com/github/codeql.git
synced 2025-12-16 16:53:25 +01:00
738 B
738 B
2.6.6
Minor Analysis Improvements
- Calls to
sinon.match()are no longer incorrectly identified as regular expression operations. - Improved data flow tracking through middleware to handle default value and similar patterns.
- Added
req._parsedUrlas a remote input source. - Improved taint tracking through calls to
serialize-javascript. - Removed
encodeURIandescapefunctions from the sanitizer list for request forgery. - The JavaScript extractor now skips generated JavaScript files if the original TypeScript files are already present. It also skips any files in the output directory specified in the
compilerOptionspart of thetsconfig.jsonfile. - Added support for Axios instances in the
axiosmodule.