aboutsummaryrefslogtreecommitdiff
path: root/sanitizers
AgeCommit message (Expand)Author
2022-08-15api: Fix paragraphs and links in JavadocFabian Meumertzheim
2022-08-13Add support for Tomcat and Jakarta Expression Language Injection Bug Detector.henryrneh
2022-07-08Remove duplicated SQL statement hooksNorbert Schneider
2022-06-28Add hook to detect SQL injectionsSimon Resch
2022-05-05Move honeypot class to APINorbert Schneider
2022-04-08Add hooks for loading arbitrary librariesKhaled Yakdan
2022-03-23Slightly increase runs count on RegexRoadblocks testFabian Meumertzheim
2022-03-08Make crash reproducer verification more reproducibleFabian Meumertzheim
2022-03-08Report compares for regex literals and character rangesFabian Meumertzheim
2022-03-07Fix regex injection hook invocation for String functionsFabian Meumertzheim
2022-03-04Add a sanitizer for general regex injectionsFabian Meumertzheim
2022-03-04Simplify existing regex injection hookFabian Meumertzheim
2022-03-04Don't suppress LDAP exceptions in hooksNorbert Schneider
2022-03-03Report a finding whenever honeypot class is loadedNorbert Schneider
2022-03-03Hook ClassLoader methodsNorbert Schneider
2022-03-03Ignore specific windows exception in RegexCanonEqInjectionNorbert Schneider
2022-03-03Add missing Expression Language test dependencySimon Resch
2022-03-03Verify the precise exception reproduced by a reproducerFabian Meumertzheim
2022-02-28Support hooks on interfacesNorbert Schneider
2022-02-28Add LDAP sanitizerNorbert Schneider
2022-02-21Make OsCommandInjection tests saferFabian Meumertzheim
2022-02-21Break up wildcard import to please ktlintFabian Meumertzheim
2022-02-18Warn when additionalClassesToHook are not hookedFabian Meumertzheim
2022-02-16Add a sanitizer for regex injection with CANON_EQ flagFabian Meumertzheim
2022-02-16Add OS command injection bug detectorNorbert Schneider
2022-02-07Simplify the hookElExpressionFactory hookKhaled Yakdan
2022-02-07Suppress warnings about unused sanitizer objectsKhaled Yakdan
2022-01-27Silence a compiler warning on unused parameters (#291)Fabian Meumertzheim
2021-12-13Use a REPLACE hook for javax.naming.Context#lookupFabian Meumertzheim
2021-12-13Add a sanitizer for javax.naming.Context#lookupFabian Meumertzheim
2021-11-18Explicitly list source files instead of using globFabian Meumertzheim
2021-10-20Remove unused Maven dependencyFabian Meumertzheim
2021-10-19Add sanitizer for expression language injection (#203)simonresch
2021-10-15Do not use @rules_java and @rules_ccFabian Meumertzheim
2021-10-11Update to Kotlin 1.5Fabian Meumertzheim
2021-07-28Update rules_kotlinFabian Meumertzheim
2021-07-22Report custom readObject calls directly instead of through finalizeFabian Meumertzheim
2021-07-19Silence misleading compilation warningsFabian Meumertzheim
2021-07-19Make sanitizer library publically visibleFabian Meumertzheim
2021-05-14Add a sanitizer for arbitrary reflective callsFabian Meumertzheim
2021-05-14Add a sanitizer for insecure deserializationFabian Meumertzheim