File tree Expand file tree Collapse file tree 7 files changed +46
-46
lines changed
Expand file tree Collapse file tree 7 files changed +46
-46
lines changed Original file line number Diff line number Diff line change 22lockVersion : 1.0.0
33dependencies :
44 codeql/dataflow :
5- version : 1.0.0
5+ version : 1.1.4
66 codeql/java-all :
7- version : 1.0.0
7+ version : 4.1.1
88 codeql/mad :
9- version : 1.0.0
9+ version : 1.0.10
1010 codeql/rangeanalysis :
11- version : 1.0.0
11+ version : 1.0.10
1212 codeql/regex :
13- version : 1.0.0
13+ version : 1.0.10
1414 codeql/ssa :
15- version : 1.0.0
15+ version : 1.0.10
1616 codeql/threat-models :
17- version : 1.0.0
17+ version : 1.0.10
1818 codeql/tutorial :
19- version : 1.0.0
19+ version : 1.0.10
2020 codeql/typeflow :
21- version : 1.0.0
21+ version : 1.0.10
2222 codeql/typetracking :
23- version : 1.0.0
23+ version : 1.0.10
2424 codeql/util :
25- version : 1.0.0
25+ version : 1.0.10
2626 codeql/xml :
27- version : 1.0.0
27+ version : 1.0.10
2828compiled : false
Original file line number Diff line number Diff line change @@ -2,4 +2,4 @@ library: true
22name : githubsecuritylab/codeql-java-libs
33version : 0.1.0
44dependencies :
5- codeql/java-all : ' ^1.0.0 '
5+ codeql/java-all : ' * '
Original file line number Diff line number Diff line change 22lockVersion : 1.0.0
33dependencies :
44 codeql/dataflow :
5- version : 1.0.0
5+ version : 1.1.4
66 codeql/java-all :
7- version : 1.0.0
7+ version : 4.1.1
88 codeql/mad :
9- version : 1.0.0
9+ version : 1.0.10
1010 codeql/rangeanalysis :
11- version : 1.0.0
11+ version : 1.0.10
1212 codeql/regex :
13- version : 1.0.0
13+ version : 1.0.10
1414 codeql/ssa :
15- version : 1.0.0
15+ version : 1.0.10
1616 codeql/threat-models :
17- version : 1.0.0
17+ version : 1.0.10
1818 codeql/tutorial :
19- version : 1.0.0
19+ version : 1.0.10
2020 codeql/typeflow :
21- version : 1.0.0
21+ version : 1.0.10
2222 codeql/typetracking :
23- version : 1.0.0
23+ version : 1.0.10
2424 codeql/util :
25- version : 1.0.0
25+ version : 1.0.10
2626 codeql/xml :
27- version : 1.0.0
27+ version : 1.0.10
2828compiled : false
Original file line number Diff line number Diff line change @@ -111,10 +111,10 @@ deprecated class UntrustedDataToExternalApiConfig extends TaintTracking::Configu
111111}
112112
113113/**
114- * Taint tracking configuration for flow from `ThreatModelFlowSource `s to `ExternalApiDataNode`s.
114+ * Taint tracking configuration for flow from `ActiveThreatModelSource `s to `ExternalApiDataNode`s.
115115 */
116116module UntrustedDataToExternalApiConfig implements DataFlow:: ConfigSig {
117- predicate isSource ( DataFlow:: Node source ) { source instanceof ThreatModelFlowSource }
117+ predicate isSource ( DataFlow:: Node source ) { source instanceof ActiveThreatModelSource }
118118
119119 predicate isSink ( DataFlow:: Node sink ) { sink instanceof ExternalApiDataNode }
120120}
@@ -247,7 +247,7 @@ private string typeAsModel(Callable c) {
247247 exists ( RefType type | type = c .getDeclaringType ( ) |
248248 result =
249249 type .getCompilationUnit ( ) .getPackage ( ) .getName ( ) + ";" +
250- type .getErasure ( ) .( J:: RefType ) .nestedName ( )
250+ type .getErasure ( ) .( J:: RefType ) .getNestedName ( )
251251 )
252252}
253253
Original file line number Diff line number Diff line change @@ -4,5 +4,5 @@ version: 0.1.0
44suites : suites
55defaultSuiteFile : suites/java.qls
66dependencies :
7- codeql/java-all : ' ^1.0.0 '
8- githubsecuritylab/codeql-java-libs : 0.0.1
7+ codeql/java-all : ' * '
8+ githubsecuritylab/codeql-java-libs : ' * '
Original file line number Diff line number Diff line change 22lockVersion : 1.0.0
33dependencies :
44 codeql/dataflow :
5- version : 1.0.0
5+ version : 1.1.4
66 codeql/java-all :
7- version : 1.0.0
7+ version : 4.1.1
88 codeql/java-queries :
9- version : 1.0.0
9+ version : 1.1.7
1010 codeql/mad :
11- version : 1.0.0
11+ version : 1.0.10
1212 codeql/rangeanalysis :
13- version : 1.0.0
13+ version : 1.0.10
1414 codeql/regex :
15- version : 1.0.0
15+ version : 1.0.10
1616 codeql/ssa :
17- version : 1.0.0
17+ version : 1.0.10
1818 codeql/suite-helpers :
19- version : 1.0.0
19+ version : 1.0.10
2020 codeql/threat-models :
21- version : 1.0.0
21+ version : 1.0.10
2222 codeql/tutorial :
23- version : 1.0.0
23+ version : 1.0.10
2424 codeql/typeflow :
25- version : 1.0.0
25+ version : 1.0.10
2626 codeql/typetracking :
27- version : 1.0.0
27+ version : 1.0.10
2828 codeql/util :
29- version : 1.0.0
29+ version : 1.0.10
3030 codeql/xml :
31- version : 1.0.0
31+ version : 1.0.10
3232compiled : false
Original file line number Diff line number Diff line change 11name : githubsecurtylab/codeql-java-tests
22groups : [java, test]
33dependencies :
4- codeql/java-all : ' ^1.0.0 '
5- codeql/java-queries : ' ^1.0.0 '
4+ codeql/java-all : ' * '
5+ codeql/java-queries : ' * '
66 githubsecuritylab/codeql-java-queries : ' *'
77 githubsecuritylab/codeql-java-libs : ' *'
88extractor : java
You can’t perform that action at this time.
0 commit comments