Egon Okerman
d1417e82f8
Modify CWE and OWASP Top 10 links to follow standard link format (APPSEC-1134) ( #3529 )
...
* Fix all CWE references
* Fix all OWASP references
* Fix missing CWE prefixes
2024-01-15 17:15:56 +01:00
Marco Borgeaud
8209548e54
Diff blocks: fix incorrect use for python ( #2795 )
...
Improvement identified in #2790 .
Add a prefix to the diff-id when it is used multiple times in different
"how to fix it in XYZ" sections to avoid ambiguity and pedantically
follow the spec:
> A single and unique diff-id should be used only once for each type of
code example as shown in the description of a rule.
Obvious typos around `diff-type` were fixed.
An obvious extra use of diff blocks was removed.
2023-08-21 15:22:49 +02:00
Marco Borgeaud
210246f5d8
Diff blocks: fix incorrect use for CFamily
...
Improvement identified in #2790 .
Add a prefix to the diff-id when it is used multiple times in different
"how to fix it in XYZ" sections to avoid ambiguity and pedantically
follow the spec:
> A single and unique diff-id should be used only once for each type of
code example as shown in the description of a rule.
Obvious typos around `diff-type` were fixed.
2023-08-15 10:14:59 +02:00
Marco Borgeaud
7da1e57a15
Diff blocks: fix some incorrect use for java ( #2801 )
2023-08-10 17:12:37 +02:00
Antonio Aversa
a02bf814d4
Clean Code Taxonomy: add "code" to all non-obsolete metadata.json ( #2793 )
2023-08-04 17:19:38 +02:00
hendrik-buchwald-sonarsource
a8961d6437
Modify rule S2755: LaYC format ( #2245 )
2023-06-22 11:25:00 +02:00
Fred Tingaud
51369b610e
Make sure that includes are always surrounded by empty lines ( #2270 )
...
When an include is not surrounded by empty lines, its content is inlined
on the same line as the adjacent content. That can lead to broken tags
and other display issues.
This PR fixes all such includes and introduces a validation step that
forbids introducing the same problem again.
2023-06-22 10:38:01 +02:00
Dorian Burihabwa
8d151af5d2
Modify rule S2755: Add missing space between asciidoc inclusion and header ( #1959 )
2023-05-30 14:04:31 +02:00
Fred Tingaud
16f6c0aecf
Inline adoc when include has no additional value ( #1940 )
...
Inline adoc files when they are included exactly once.
Also fix language tags because this inlining gives us better information
on what language the code is written in.
2023-05-25 14:18:12 +02:00
leonardo-pilastri-sonarsource
a03f566e95
Add missing tags on java specific rule metadata ( #1841 )
2023-05-08 16:50:41 +02:00
Victor
fe961619f9
migrate rule descriptions to new education format
2023-05-05 16:29:04 +02:00
leonardo-pilastri-sonarsource
8e459cca14
Modify SE engine rules to add "symbolic-execution" tag ( #1832 )
2023-05-05 14:46:46 +02:00
Jamie Anderson
2d8892defb
Modify rules: Remove "owasp-aX" tag ( #1655 )
2023-03-16 15:25:13 +01:00
Alexandre Gigleux
01bad1b800
Map rules to OWASP ASVS 4 ( #1110 )
...
https://sonarsource.atlassian.net/browse/MMF-2794
2022-07-29 13:35:38 +02:00
pedro-oliveira-sonarsource
082b3ef269
Modify: Fix old/broken embedded links ( #1100 )
2022-07-08 13:58:56 +02:00
pedro-oliveira-sonarsource
b04b29019c
[APPSEC-3] Security rules are mapped to PCI DSS 4.0 ( #1007 )
2022-05-24 16:19:27 +02:00
pedro-oliveira-sonarsource
4cd575af12
[APPSEC-2] New security standard - PCI DSS 3.2 ( #1005 )
2022-05-23 09:00:28 +02:00
jtingsanchali
96d9ddb930
RULEAPI-755 Update CWE URLs by removing .html suffix and update with https protocol ( #926 )
...
* Change affects only see.adoc and rule.adoc files, not comments-and-links.adoc files
2022-04-07 08:53:59 -05:00
eric-therond-sonarsource
6fbd1856ba
Modify rule S2755[java]: Allow setExpandEntityReferences solution for openJDK >=13 ( #299 )
2022-02-15 16:51:53 +00:00
Fred Tingaud
b4161466e6
RULEAPI-661: Add syntax coloring
2022-02-04 16:28:24 +00:00
eric-therond-sonarsource
1ca56eaf42
Remove XML code sample in Java rules targeting XML ( #748 )
2022-01-26 10:06:59 +01:00
quentin-jaquier-sonarsource
b852464436
Document quick fixes for S2755, S6373, S6374, S6376 and S6377 ( #745 )
2022-01-25 13:38:33 +01:00
Alban Auzeill
c6430d2475
Modify rule S2755[java]: wrong method name for SchemaFactory example ( #610 )
2021-11-22 16:30:51 +01:00
Pierre-Loup
e7ad1012e3
RULEAPI-709: Security rules are mapped to the OWASP Top 10 2021 security-standard ( #545 )
2021-11-01 15:00:32 +01:00
Pierre-Loup
547094ab3c
Update CWE mapping ( #534 )
2021-10-28 10:07:16 +02:00
Arseniy Zaostrovnykh
6a0ec99e78
RULEAPI-706: Add quick fixes metadata
2021-10-07 09:23:15 +00:00
Arseniy Zaostrovnykh
2301f5808e
RULEAPI-695: remove extra/coveredLanguages field
2021-09-28 13:36:45 +02:00
Arseniy Zaostrovnykh
ec55b6ead1
RULEAPI-687: Migrate legacy keys from Jira RSPEC ( #392 )
2021-09-24 09:08:46 +02:00
Arseniy Zaostrovnykh
f7904cebe7
RULEAPI-666: Migrate the "List of parameters", "Highlighting" and "Message" fields from jira RSPEC ( #346 )
2021-09-20 13:38:42 +00:00
Elena Vilchik
4017668a76
Fixes for JavaScript: remove 'Sonar way recommended' profile and legacy keys ( #148 )
2021-06-25 14:41:11 +02:00
Dorian Burihabwa
c7194dc4a4
Modify rule S2755: Add missing inclusion of top-level rule description for Java
2021-06-25 13:10:16 +02:00
eric-therond-sonarsource
b0e7610faa
Update S2755 description to be more consise ( #137 )
2021-06-25 09:14:23 +02:00
Arseniy Zaostrovnykh
b76bc57083
RULEAPI-576: add a horizontal rule between rule description and comments
2021-06-08 15:52:13 +02:00
Amélie Renard
7b177ec126
RULEAPI-608 Rename unconventional headers in RSPECs and update the validation script in GitHub rspec repository
2021-06-04 14:23:34 +02:00
Arseniy Zaostrovnykh
6c1ad2c13c
Fix the comment display: rule-id, timestamp, GH visibility, link direction
2021-06-03 09:05:38 +02:00
Arseniy Zaostrovnykh
cdd7690a79
Export comments and rspec-to-rspec links from jira
2021-06-02 20:44:38 +02:00
sonartech
8a40b3deb6
Nightly update
2021-02-23 01:11:03 +00:00
sonartech
e38c1bdc13
Nightly update
2021-02-19 01:13:55 +00:00
Arseniy Zaostrovnykh
acadea59e9
move coveredLangauges and replacementRules into extra field
2021-02-16 17:52:17 +01:00
Arseniy Zaostrovnykh
1d713451d6
Undo the abuse of compatibleLanguages metadata field
2021-02-16 15:00:44 +01:00
Arseniy Zaostrovnykh
f543279c4b
update
2021-02-15 12:31:39 +01:00
Arseniy Zaostrovnykh
b6cdecf9ea
Update rules metadata
2021-02-15 10:42:33 +01:00
Arseniy Zaostrovnykh
18ea641780
Export the small grammar fixes for python rspecs
2021-02-09 09:19:37 +01:00
Arseniy Zaostrovnykh
a09a26d560
fix hading of {{\+}} and sort the compatible languages
2021-02-08 12:42:26 +01:00
Arseniy Zaostrovnykh
b62862646c
move typescript rules to javascript directory
2021-02-08 10:49:37 +01:00
sonartech
0ffbfb133d
Nightly update
2021-02-06 04:10:49 +00:00
Arseniy Zaostrovnykh
af8cda992b
unescape more things
2021-02-05 10:34:25 +01:00
Arseniy Zaostrovnykh
402a7d7be3
sort metadata fields
2021-02-04 12:27:03 +01:00
Arseniy Zaostrovnykh
f6093ee186
Overapproximate compatibleLanguages and tags/standards
2021-02-02 19:11:00 +01:00
Arseniy Zaostrovnykh
716b335a56
Enable forced linebreaks in quotes; escape -- in url
2021-02-02 16:54:43 +01:00