Commit graph

  • 607d607b51
    Enable Go 1.18 in the ci and release workflows v2.11.0 Cosmin Cojocar 2022-03-21 16:53:22 +0100
  • 7b349c38bb
    Add golangci as a make target Cosmin Cojocar 2022-03-21 16:46:15 +0100
  • ab2e215da0
    Fix lint warning Cosmin Cojocar 2022-03-21 16:45:59 +0100
  • e7628d0f34
    Enable Go 1.18 in the ci and release workflows Cosmin Cojocar 2022-03-21 16:19:45 +0100
  • ada9de8892
    chore(deps): update all dependencies Renovate Bot 2022-03-21 10:57:25 +0000
  • b99b5f7838
    Fix the lint action after upgrade (#790) Cosmin Cojocar 2022-03-14 14:19:29 +0100
  • c2381173b6
    Fix the lint action after upgrade Cosmin Cojocar 2022-03-14 14:13:40 +0100
  • 8af0af7611
    chore(deps): update all dependencies (#789) renovate[bot] 2022-03-14 14:10:28 +0100
  • 9d08852c4e
    chore(deps): update all dependencies Renovate Bot 2022-03-14 01:27:37 +0000
  • ea5d31f7f5
    Add a recursive flag -r to skip specifying ./... path Per Arn 2022-03-07 10:31:22 +0100
  • 422f704ebe refactored to remove code duplication ArnPellesGit 2022-03-07 00:23:56 +0100
  • 24dadab857 added recursive flag to skip specifying ./... path ArnPellesGit 2022-03-06 20:14:50 +0100
  • 48bbf96b56
    Adds directory traversal for Http.Dir("/") Calin Capitanu 2022-03-06 10:58:47 +0100
  • c0e6cf548d Fixed linters Calin Capitanu 2022-03-06 10:52:50 +0100
  • 7557203eb8 Fixed tests Calin Capitanu 2022-03-04 00:01:39 +0100
  • 2005c76cd6 Fixed directory traversal Calin Capitanu 2022-03-03 22:57:14 +0100
  • 49aa6812d7 Fix comments, need to traverse the ast properly Calin Capitanu 2022-03-03 20:45:01 +0100
  • 923ee4c3a0 Fix readme Calin Capitanu 2022-03-01 22:05:04 +0100
  • 36621990bc Adds test setup and code basis Calin Capitanu 2022-03-01 21:58:15 +0100
  • 83cdda5c34
    chore(deps): update all dependencies to v3 Renovate Bot 2022-03-01 17:57:02 +0000
  • 26f10e0a7a
    Extend the release action to sign the docker image and binary files with cosign (#781) v2.10.0 Cosmin Cojocar 2022-02-22 21:33:42 +0100
  • 25b041f884
    Fix the lint warnings Cosmin Cojocar 2022-02-22 21:29:14 +0100
  • 71d42f3eaa
    Fix the ling warnings Cosmin Cojocar 2022-02-22 21:21:19 +0100
  • 1056de9515
    Fix lint warnings Cosmin Cojocar 2022-02-22 21:13:55 +0100
  • b9b5693ba9
    Extend the release action to sign the docker image and binary files with cosign Cosmin Cojocar 2022-02-22 21:09:29 +0100
  • 7d539ed494
    feat: add concurrency option to parallelize package loading (#778) kruskal 2022-02-16 18:23:37 +0100
  • 7430f6e82f test: add test for concurrent scan kruskal 2022-02-16 18:03:16 +0100
  • 412951c2a7 fix: gracefully stop the workers on error kruskal 2022-02-16 17:45:45 +0100
  • 951327f48c refactor: move wg.add inside the for loop kruskal 2022-02-16 15:20:31 +0100
  • 43577cebb7 chore(deps): update all dependencies Renovate Bot 2022-02-15 18:32:35 +0000
  • 48b14cf75c
    chore(deps): update all dependencies Renovate Bot 2022-02-15 18:32:35 +0000
  • 923dbd25e5 feat: add concurrency option to parallelize package loading kruskal 2022-02-12 21:24:13 +0100
  • c0680bb6a3 Process the code snippet before adding it to the SARIF report Cosmin Cojocar 2022-02-09 16:05:15 +0100
  • 9a67f30ad8
    Process the code snippet before adding it to the SARIF report Cosmin Cojocar 2022-02-09 16:05:15 +0100
  • db8d98b571 Updated sponsor link in README.md de-jcup 2022-02-07 09:29:33 +0100
  • 507f8472ca chore(deps): update golang.org/x/crypto commit hash to 30dcbda Renovate Bot 2022-02-07 00:44:46 +0000
  • 4a7edb2dec Updated sponsor link in README.md de-jcup 2022-02-07 09:29:33 +0100
  • 23ff71fde4
    chore(deps): update golang.org/x/crypto commit hash to 30dcbda Renovate Bot 2022-02-07 00:44:46 +0000
  • 853e1d5034 chore(deps): update all dependencies Renovate Bot 2022-01-31 00:52:02 +0000
  • e9748947d4
    chore(deps): update all dependencies Renovate Bot 2022-01-31 00:52:02 +0000
  • 09a2941ad4 Use the CWE name as a name in the SARIF report Cosmin Cojocar 2022-01-26 18:29:03 +0100
  • 9399e7bed7
    chore(deps): update all dependencies (#771) renovate[bot] 2022-01-27 11:26:33 +1000
  • 6dab830a0f
    chore(deps): update all dependencies Renovate Bot 2022-01-27 01:21:11 +0000
  • 2fad8a4193 Resolve the TLS min version when is declarted in the same package but in a different file Cosmin Cojocar 2022-01-26 19:21:32 +0100
  • 1fbcf10e18 Add a test for tls min version defined in a different file Cosmin Cojocar 2022-01-26 18:13:53 +0100
  • 4546f9554b
    Resolve the TLS min version when is declarted in the same package but in a different file Cosmin Cojocar 2022-01-26 19:21:32 +0100
  • 2ae4e22083
    Use the CWE name as a name in the SARIF report Cosmin Cojocar 2022-01-26 18:29:03 +0100
  • 28d00e63c6
    Add a test for tls min version defined in a different file Cosmin Cojocar 2022-01-26 18:13:53 +0100
  • b12c0f6e4e
    chore(deps): update all dependencies (#765) renovate[bot] 2022-01-26 11:10:11 +0100
  • 2a03916b04
    chore(deps): update all dependencies Renovate Bot 2022-01-24 00:43:57 +0000
  • 1d909e2687
    Add db.Exec and db.Prepare to the sql rule (#763) v2.9.6 kaiili 2022-01-17 20:50:37 +0800
  • 742aa848f9
    chore(deps): update golang.org/x/crypto commit hash to 5e0467b (#764) renovate[bot] 2022-01-17 12:42:54 +0100
  • 97beb51ad7
    chore(deps): update golang.org/x/crypto commit hash to 5e0467b Renovate Bot 2022-01-17 00:58:32 +0000
  • 407051fd6f add test cases for G201,G202 kaiili 2022-01-16 16:59:37 +0800
  • e07e2916e7 Add db.Exec and db.Prepare to the sql rule kaiili 2022-01-16 16:55:57 +0800
  • 7be6d4efb5
    Add os.Create to the readfile rule (#761) Cosmin Cojocar 2022-01-12 19:33:17 +0100
  • 4f9cbc2861
    Fix lint warning Cosmin Cojocar 2022-01-12 19:25:48 +0100
  • 96e4ffbb62
    Move the test code sample into the right place Cosmin Cojocar 2022-01-12 19:21:37 +0100
  • 686c46549e
    Fix the sample code Cosmin Cojocar 2022-01-12 17:06:59 +0100
  • b5872792c4
    Add os.Create to the readfile rule Cosmin Cojocar 2022-01-12 16:45:33 +0100
  • 75cc7dcd51
    Fix false negative for SQL injection when using DB.QueryRow.Scan() (#759) kaiili 2022-01-12 23:33:39 +0800
  • 6fec87a2fa
    remove left over from rebase kaiili 2022-01-12 08:55:12 +0800
  • 83e31e83ff rename variable,remove useless comment kaiili 2022-01-12 08:45:11 +0800
  • ae3149fae1 Fix false negative for SQL injection when using DB.QueryRow.Scan() kaiili 2022-01-11 22:33:29 +0800
  • 58058af0c8
    chore(deps): update dependency highlight.js to v11.4.0 (#758) renovate[bot] 2022-01-10 10:56:36 +0100
  • 2c21b0cf96
    chore(deps): update dependency highlight.js to v11.4.0 Renovate Bot 2022-01-10 01:42:54 +0000
  • 69735e3237 add test case for G201 kaiili 2022-01-09 19:28:06 +0800
  • fd3fe2a9a5 fix issues/713 kaiili 2022-01-09 19:22:04 +0800
  • 9eff995163 add test from G201 kaiili 2022-01-06 23:14:39 +0800
  • 9d66b0d346
    Fix false negatives for SQL injection in multi-line queries kaiili 2022-01-05 19:05:53 +0800
  • 7ecc4ebaf8 add new line in go.mod ,go.sum kaiili 2022-01-05 10:07:22 +0800
  • cd19e7cb9d sync go.mod go.sum from master kaiili 2022-01-05 09:56:21 +0800
  • a4ddd81c32 merge branch 'master' kaiili 2022-01-05 09:49:59 +0800
  • 8073d88f6a
    Delete go.sum kaiili 2022-01-05 09:46:27 +0800
  • 551e52a212
    Delete go.mod kaiili 2022-01-05 09:46:00 +0800
  • 1a37534114 add G201 \n test case kaiili 2022-01-05 09:37:42 +0800
  • 6ad4444fc7 Merge branch 'master' of github.com:kaiili/gosec kaiili 2022-01-04 23:54:43 +0800
  • a6e1035386 fix G201, change regexp to detect \n\r kaiili 2022-01-04 23:53:27 +0800
  • 72827715f0
    Merge branch 'securego:master' into master kaiili 2022-01-04 23:15:39 +0800
  • 4c1afaa492
    Find G303 with filepath.Join'd temp dirs (#754) Ville Skyttä 2022-01-04 15:48:02 +0200
  • f39e5ad64f Find G303 with filepath.Join'd temp dirs Ville Skyttä 2022-01-04 00:02:12 +0200
  • 19bda8d15f
    Find more tempdirs Ville Skyttä 2022-01-03 22:58:25 +0200
  • c76accdd24 Find G303 with /usr/tmp, too Ville Skyttä 2022-01-01 12:20:43 +0200
  • 8aa808c618 Find G303 in string concatenations, with os.TempDir, and in path.Join args Ville Skyttä 2022-01-01 12:07:51 +0200
  • 827fca9a83
    build(fmt): use [ instead of [[ (#751) Ville Skyttä 2022-01-03 21:26:14 +0200
  • 5c6c4cad24 build(fmt): use [ instead of [[ Ville Skyttä 2021-12-31 16:56:28 +0200
  • ad5d74d5a1
    Update to ginkgo v2 (#753) Cosmin Cojocar 2022-01-03 18:11:35 +0100
  • 0f52cc7a23
    Update to ginkgo v2 Cosmin Cojocar 2022-01-03 18:02:58 +0100
  • 72f1145f8a
    Fix #743 (#748) Yiwei Ding 2022-01-03 23:48:42 +0800
  • 099bb8dda9 remove useless comment kaiili 2021-12-29 09:44:28 +0800
  • b62e705275
    Merge branch 'securego:master' into master kaiili 2021-12-29 08:56:24 +0800
  • 88e16b907b Use \n instead of a whitespace in a test case Yiwei Ding 2021-12-23 16:44:33 +0800
  • 6139c2eb7a Check if nosec tag is in front of a line Yiwei Ding 2021-12-23 16:12:43 +0800
  • 63a8e789a1
    Handle nil when looking up a file by position into a package (#747) Cosmin Cojocar 2021-12-22 17:50:46 +0100
  • 4bcc6b3bbc
    Handle nil when looking up a file by position into a package Cosmin Cojocar 2021-12-22 17:42:50 +0100
  • 3038a30e3c
    Add in the config file settings for exclude and include options kaiili 2021-12-21 06:43:50 +0800
  • bf0dd2fdd3
    chore(deps): update golang.org/x/crypto commit hash to e495a2d (#745) renovate[bot] 2021-12-20 23:36:02 +0100
  • 2d1c1a6df7
    Track both #nosec and #nosec rulelist for one violation (#741) Yiwei Ding 2021-12-21 06:33:01 +0800
  • afe47c450c
    chore(deps): update golang.org/x/crypto commit hash to e495a2d Renovate Bot 2021-12-20 00:43:22 +0000
  • d24be855d7
    fix kaiili 2021-12-19 16:59:00 +0800