Commit graph

  • 674c6eb82d Improve the TLS version checking Cosmin Cojocar 2020-06-23 11:34:08 +0200
  • 15b0956963 Make sure some version information is set when no version was injected into the binary Cosmin Cojocar 2020-06-19 10:28:01 +0200
  • 1d2c951f2c Extend the rule G304 with os.OpenFile and add a test to cover it Cosmin Cojocar 2020-06-16 13:29:03 +0200
  • 883fd84a01 Extend the rule G304 with os.OpenFile and add a test to cover it Cosmin Cojocar 2020-06-16 13:29:03 +0200
  • 0c1a71b8a1 Add more tests samples to increase coverage Cosmin Cojocar 2020-06-15 12:26:56 +0200
  • fe07fcf276 Fix unit test when checking a mix of good and bad random functions Cosmin Cojocar 2020-06-15 12:10:08 +0200
  • 6bbf8f9cbc Extend the insecure random rule with more insecure random functions Cosmin Cojocar 2020-06-15 12:00:13 +0200
  • feb9c40a99 Add more tests samples to increase coverage Cosmin Cojocar 2020-06-15 12:26:56 +0200
  • 020ee0d18a Fix unit test when checking a mix of good and bad random functions Cosmin Cojocar 2020-06-15 12:10:08 +0200
  • 06065533f7 Extend the insecure random rule with more insecure random functions Cosmin Cojocar 2020-06-15 12:00:13 +0200
  • af699f6a62
    Exclude .git directory from scan (#485) Hiroaki Sano 2020-06-09 22:16:27 +0900
  • 6360db547b Exclude .git directory from scan Hiroaki Sano 2020-06-09 21:47:06 +0900
  • 6202b38a44
    Update all dependencies (#484) renovate[bot] 2020-06-02 09:31:29 +0200
  • e5de00897d
    Update all dependencies Renovate Bot 2020-06-02 06:47:08 +0000
  • 6a130d55b3
    Update the link pointing to issues to CWE mapping to use the master version (#483) Cosmin Cojocar 2020-05-28 14:40:15 +0200
  • 33752e0407 Update the link pointing to issues to CWE mapping to use the master version Cosmin Cojocar 2020-05-28 14:39:36 +0200
  • 826db1cfec
    Fix the build tags propagation Lukas Aron 2020-05-27 20:42:19 +1000
  • 7938e81afa BugFix-369 Comments added Lukas Aron 2020-05-27 20:34:28 +1000
  • 6e6e1c007a BugFix-369 Comments added Lukas Aron 2020-05-27 20:33:31 +1000
  • 121b9012b3 BugFix-369 Tags are propagated. Lukas Aron 2020-05-27 20:30:25 +1000
  • b95dac43c7 Merge branch 'master' into BugFix-393 Lukas Aron 2020-05-27 20:11:35 +1000
  • 7da9248ce6 Change the issue test to verify that a multi-line finding contains a line range Cosmin Cojocar 2020-05-26 09:05:24 +0200
  • 7aedcc56ab Remove print line from tests Cosmin Cojocar 2020-05-25 15:46:59 +0200
  • 30e93bf865 Improve the SQL strings concat rules to handle multiple string concatenation Cosmin Cojocar 2020-05-25 15:42:43 +0200
  • 68bce94323 Improve the SQL concatenation and string formatting rules to be applied only in the database/sql context Cosmin Cojocar 2020-05-25 14:19:00 +0200
  • 6d356926d0 Change the issue test to verify that a multi-line finding contains a line range Cosmin Cojocar 2020-05-26 09:05:24 +0200
  • a581a87563 Remove print line from tests Cosmin Cojocar 2020-05-25 15:46:59 +0200
  • 7e4948f1ea Improve the SQL strings concat rules to handle multiple string concatenation Cosmin Cojocar 2020-05-25 15:42:43 +0200
  • 9d92f4e2a9 Improve the SQL concatenation and string formatting rules to be applied only in the database/sql context Cosmin Cojocar 2020-05-25 14:19:00 +0200
  • 32be4a5cc6 Make sure all rules are mapped to CWE numbers Cosmin Cojocar 2020-05-25 16:12:01 +0200
  • 94962bc80a Make sure all rules are mapped to CWE numbers Cosmin Cojocar 2020-05-25 16:12:01 +0200
  • ad5f92e8c6 BugFix-369 code cleaned Lukas Aron 2020-05-25 14:45:36 +1000
  • a9de2af8ea BugFix-393 Build tags are propagated Lukas Aron 2020-05-24 00:16:05 +1000
  • 5b11e7e7a6 BugFix-369 SQL Regex support case-insensitivity Lukas Aron 2020-05-23 22:20:32 +1000
  • 8630c43b66 Add null pointer check in G601 Grant Murphy 2020-05-21 01:17:44 +1000
  • 175da21978 Add null pointer check in G601 Grant Murphy 2020-05-21 01:17:44 +1000
  • 1418b856ea ondisk -> onDisk Lukas Aron 2020-05-18 17:35:14 +1000
  • b2cfc5d638 USERS.md type in the title fixed. Lukas Aron 2020-05-16 07:58:00 +1000
  • a744de0c0f ondisk -> onDisk Lukas Aron 2020-05-18 17:35:14 +1000
  • 76753b8b08 USERS.md type in the title fixed. Lukas Aron 2020-05-16 07:58:00 +1000
  • 425b8f9531 Display a sponsor button in the repository Cosmin Cojocar 2020-05-14 08:50:38 +0200
  • ac972e53f0
    Display a sponsor button in the repository Cosmin Cojocar 2020-05-14 08:50:38 +0200
  • 0714a1e62a Update the users file with some more projects and companies Cosmin Cojocar 2020-05-08 12:57:35 +0200
  • 1b915ddad7 Set up a gosec's users list Cosmin Cojocar 2020-05-08 10:14:32 +0200
  • 9fd5b1f45a Update the users file with some more projects and companies Cosmin Cojocar 2020-05-08 12:57:35 +0200
  • f36055ddaf Set up a gosec's users list Cosmin Cojocar 2020-05-08 10:14:32 +0200
  • 668512fc5c Update bad_defer.go Vitaly Velikodny 2020-05-06 17:17:27 +0300
  • 3916e09d90
    Update bad_defer.go Vitaly Velikodny 2020-05-06 17:17:27 +0300
  • ee3146e637 Rule which detects aliasing of values in RangeStmt v2.3.0 Caccavale 2019-12-19 12:39:33 -0500
  • ce87709a94 Rule which detects aliasing of values in RangeStmt Caccavale 2019-12-19 12:39:33 -0500
  • 8662624e28 Update the build badge to ge the status from GitHub workflow Cosmin Cojocar 2020-04-20 12:19:47 +0200
  • 5129590f23 Update the build badge to ge the status from GitHub workflow Cosmin Cojocar 2020-04-20 12:19:47 +0200
  • a5db4e1f04 Run mod tidy to clean up the dependencies Cosmin Cojocar 2020-04-20 10:10:05 +0200
  • fb44007c6e Enhance the hardcoded credentials rule to check the equality and non-equality of strings Cosmin Cojocar 2020-04-17 15:47:27 +0200
  • 4a68b28893 Run mod tidy to clean up the dependencies Cosmin Cojocar 2020-04-20 10:10:05 +0200
  • 47842baebf Enhance the hardcoded credentials rule to check the equality and non-equality of strings Cosmin Cojocar 2020-04-17 15:47:27 +0200
  • a2a40de847 Update the README with an example to configure the hard-coded credentials rule Cosmin Cojocar 2020-04-15 16:13:40 +0200
  • 802292c54f Fix the configuration parsing for hardcoded credentials Cosmin Cojocar 2020-04-15 16:10:21 +0200
  • ca4704b12d Update the README with an example to configure the hard-coded credentials rule Cosmin Cojocar 2020-04-15 16:13:40 +0200
  • 785e685fb1 Fix the configuration parsing for hardcoded credentials Cosmin Cojocar 2020-04-15 16:10:21 +0200
  • c58f3563d3 Set the default color on only for text format Cosmin Cojocar 2020-04-14 18:32:48 +0200
  • d33aeed06e Set the default color on only for text format Cosmin Cojocar 2020-04-14 18:32:48 +0200
  • 1a113d6da9 Turn the color always on when the text format is set Cosmin Cojocar 2020-04-14 10:51:21 +0200
  • c4417de46d Use the latest color package to get the color working with tmux Cosmin Cojocar 2020-04-14 10:39:16 +0200
  • 904e5c69b5 Turn the color always on when the text format is set Cosmin Cojocar 2020-04-14 10:51:21 +0200
  • f84dffb17b Use the latest color package to get the color working with tmux Cosmin Cojocar 2020-04-14 10:39:16 +0200
  • 656691b387
    feature(formatter/text): Add color option on text format (#460) Marco Antônio Singer 2020-04-14 04:50:02 -0300
  • 51e4317f09 Automate the release process using a GitHub workflow Cosmin Cojocar 2020-04-09 13:01:40 +0200
  • 060c9fd5bc refactor(formatter): Passing color flag forward Marco Singer 2020-04-10 20:02:50 -0300
  • 78353d26d1 feature(main): Add color flag Marco Singer 2020-04-10 19:58:46 -0300
  • c0373d5ad5 feature(formatter): Highlight issues based on severity Marco Singer 2020-04-10 19:35:03 -0300
  • 4c5175e64f feature(formatter): Add color output for text format Marco Singer 2020-04-10 19:30:12 -0300
  • ced3103881 docs(formatter/CreateReport): Update formats accepted Marco Singer 2020-04-10 19:13:23 -0300
  • 9967003e8d feature(issue): Add function to return file path and line number Marco Singer 2020-04-10 19:09:53 -0300
  • 9f34ca2d3c Automate the release process using a GitHub workflow Cosmin Cojocar 2020-04-09 13:01:40 +0200
  • 341059e11a Update the GitHub action name to be more desriptive Cosmin Cojocar 2020-04-08 09:40:50 +0200
  • 3b6c3f13f1 Update README with some instruction how to run gosec as a GitHub action Cosmin Cojocar 2020-04-06 18:13:28 +0200
  • 08202fee80 Add a GitHub action to run gosec Cosmin Cojocar 2020-04-06 18:08:01 +0200
  • 9851f48bb1 Update README with some instruction how to run gosec as a GitHub action Cosmin Cojocar 2020-04-06 18:13:28 +0200
  • 06673a512b Add a GitHub action to run gosec Cosmin Cojocar 2020-04-06 18:08:01 +0200
  • c6e10af40f Handle properly the gosec module version v2 Cosmin Cojocar 2020-04-01 22:18:39 +0200
  • 3b7c5d128e Handle properly the gosec module version v2 Cosmin Cojocar 2020-04-01 22:18:39 +0200
  • e946c8c399 Update all dependencies Renovate Bot 2020-04-01 06:22:47 +0000
  • 1098085523
    Update all dependencies Renovate Bot 2020-04-01 06:22:47 +0000
  • e030aa4f76 Remove the go 1.14 version from github action Cosmin Cojocar 2020-03-30 13:20:59 +0200
  • ee176ff8fc Fix the job names in the Github workflow Cosmin Cojocar 2020-03-30 13:16:53 +0200
  • cabccc75ef Add to GitHub workflow some jobs for go1.13 and go1.12 Cosmin Cojocar 2020-03-30 13:15:21 +0200
  • a111777041 Change the GitHub workflow to use only the latest Go version Cosmin Cojocar 2020-03-30 13:06:29 +0200
  • 722acb64cb Change the GitHub workflow to run the builds only on ubuntu-latest platform Cosmin Cojocar 2020-03-30 12:59:02 +0200
  • 5284f34b6f Change the GitHub workflow to use an action which install Go using a Go version from the matrix Cosmin Cojocar 2020-03-30 12:52:42 +0200
  • 8de5fb6eb2 Migrate the build to GitHub Actions Cosmin Cojocar 2020-03-26 22:43:52 +0100
  • 09a39f1918 Migrate the build to GitHub Actions Cosmin Cojocar 2020-03-26 22:43:52 +0100
  • 7da9f46445 Fix the call list info to handle selector expressions Cosmin Cojocar 2020-03-15 15:42:26 +0100
  • 144ed5297d Fix the call list info to handle selector expressions Cosmin Cojocar 2020-03-15 15:42:26 +0100
  • cf2590442c Fix the subproc rule to handle correctly the CommandContext check Cosmin Cojocar 2020-03-11 15:18:38 +0100
  • f97f86103c Update the subproc rule to detect the syscall.ForkExec and syscall.StartProces calls Cosmin Cojocar 2020-03-11 14:00:30 +0100
  • b8c1acdd0f Fix the subproc rule to handle correctly the CommandContext check Cosmin Cojocar 2020-03-11 15:18:38 +0100
  • 11f3259d6e Update the subproc rule to detect the syscall.ForkExec and syscall.StartProces calls Cosmin Cojocar 2020-03-11 14:00:30 +0100
  • c998389da2
    re-generate install.sh with latest godownloader (#446) Tomas Kral 2020-03-02 14:48:48 +0100
  • 385c827d36 re-generate install.sh with latest godownloader Tomas Kral 2020-03-02 14:36:35 +0100