4972 Commits

Author SHA1 Message Date
Massimo Paladin
e0e9ecf750
Update cirrus-modules to v3 2024-11-19 14:56:05 +01:00
SonarTech
c383a324cd update coverage information 2024-11-19 02:45:28 +00:00
Pavel Mikula
14115715cd
NET-700 Modify S7133: Remove Monitor and events (#4515) 2024-11-18 12:09:18 +01:00
Pavel Mikula
99589d0af9
NET-682 Modify S7133: Add vbnet rspec (#4514) 2024-11-18 09:48:20 +01:00
SonarTech
40e39609de update coverage information 2024-11-16 02:44:48 +00:00
github-actions[bot]
831b770bfc
NET-680 Modify S7131: Add vbnet (#4511) 2024-11-15 17:44:24 +01:00
github-actions[bot]
3fca2aa4b8
Create rule S7171: Mailgun SMTP credentials should not be disclosed (#4512)
* Create rule S7171

* Add RSPEC content

* Remove comments from rule.adoc

---------

Co-authored-by: jamie-anderson-sonarsource <jamie-anderson-sonarsource@users.noreply.github.com>
Co-authored-by: Jamie Anderson <127742609+jamie-anderson-sonarsource@users.noreply.github.com>
2024-11-15 16:14:08 +00:00
github-actions[bot]
402e3ea5ef
Create rule S7162: Dropbox OAuth tokens should not be disclosed (#4498)
* Create rule S7162

* Add RSPEC content

* Update rule.adoc

Remove `diff-type` from an example to see if it passes the build checks.

---------

Co-authored-by: jamie-anderson-sonarsource <jamie-anderson-sonarsource@users.noreply.github.com>
Co-authored-by: Jamie Anderson <127742609+jamie-anderson-sonarsource@users.noreply.github.com>
2024-11-15 16:12:21 +00:00
github-actions[bot]
0b279b2bf2
Create rule S7164: Dropbox app credentials should not be disclosed (#4501)
* Create rule S7164

* Initial content

* Additional content

---------

Co-authored-by: jamie-anderson-sonarsource <jamie-anderson-sonarsource@users.noreply.github.com>
Co-authored-by: Jamie Anderson <127742609+jamie-anderson-sonarsource@users.noreply.github.com>
2024-11-15 16:12:02 +00:00
github-actions[bot]
8d1152d450
Create rule S7161: Tableau secrets should not be disclosed (#4497)
* Create rule S7161

* Add text

* Apply suggestions from code review

Co-authored-by: Jamie Anderson <127742609+jamie-anderson-sonarsource@users.noreply.github.com>

---------

Co-authored-by: loris-s-sonarsource <loris-s-sonarsource@users.noreply.github.com>
Co-authored-by: Loris Sierra <loris.sierra@sonarsource.com>
Co-authored-by: Loris S. <91723853+loris-s-sonarsource@users.noreply.github.com>
Co-authored-by: Jamie Anderson <127742609+jamie-anderson-sonarsource@users.noreply.github.com>
2024-11-15 16:56:28 +01:00
github-actions[bot]
21cc3400bd
NET-590 Create rule S7133: Locks should be released within the same method (#4449) 2024-11-15 16:21:18 +01:00
github-actions[bot]
470973e6d1
Create rule S7165: New Relic secrets should not be disclosed (APPSEC-2253) (#4503) 2024-11-15 16:09:31 +01:00
github-actions[bot]
9592b44aa4
Create rule S7170: HubSpot secrets should not be disclosed (#4510)
* Create rule S7170

* Add text

* Update rules/S7170/secrets/rule.adoc

Co-authored-by: Pierre-Loup <49131563+pierre-loup-tristant-sonarsource@users.noreply.github.com>

* Update rules/S7170/secrets/rule.adoc

---------

Co-authored-by: loris-s-sonarsource <loris-s-sonarsource@users.noreply.github.com>
Co-authored-by: Loris Sierra <loris.sierra@sonarsource.com>
Co-authored-by: Loris S. <91723853+loris-s-sonarsource@users.noreply.github.com>
Co-authored-by: Pierre-Loup <49131563+pierre-loup-tristant-sonarsource@users.noreply.github.com>
2024-11-15 14:59:58 +01:00
github-actions[bot]
03d5cf98e7
Create rule S7169: Coveo API keys should not be disclosed (#4508) 2024-11-15 11:47:55 +01:00
tomasz-kaminski-sonarsource
c83d7bff84
S5408 Remove constexpr static data members from rspec (CPP-5809) 2024-11-15 10:51:09 +01:00
SonarTech
953f1f0315 update coverage information 2024-11-15 02:45:59 +00:00
Alban Auzeill
251db04bc0
Modify rule S6418: Fix typo in a variable (#4513) 2024-11-14 18:11:49 +01:00
github-actions[bot]
41e6f81392
Create rule S7158: String.isEmpty() should be used to test for emptiness (#4493) 2024-11-14 17:03:15 +01:00
github-actions[bot]
423514e941
NET-589 Create rule S7131: You should not release a write lock when a read lock has been acquired and vice versa (#4433) 2024-11-14 16:43:14 +01:00
github-actions[bot]
064a3a01dd
Create rule S7167: Mergify application keys should not be disclosed (#4505) 2024-11-14 16:42:02 +01:00
github-actions[bot]
6c69789850
Create rule S7163: Mandrill API keys should not be disclosed (#4500) 2024-11-14 16:41:51 +01:00
GabinL21
19f97f60ba
Modify rule S6249: fix Terraform code examples (#4502) 2024-11-14 14:03:27 +01:00
github-actions[bot]
9f98b3b50d
Create rule S7155: CircleCI secrets should not be disclosed (APPSEC-2239) (#4490) 2024-11-14 13:45:36 +01:00
Pavel Mikula
a0be31ce67
NET-668 Modify S7130: Add vbnet rspec (#4499) 2024-11-14 13:25:46 +01:00
github-actions[bot]
f4690e5118
Create rule S7153 (#4488) 2024-11-14 11:33:24 +01:00
github-actions[bot]
007eef4362
Create rule S7150(secrets): Anthropic API keys should not be disclosed (#4484) 2024-11-13 16:32:24 +01:00
github-actions[bot]
51b85e712b
Create rule S7151: Hugging Face access tokens should not be disclosed (#4486) 2024-11-13 16:14:45 +01:00
github-actions[bot]
1d3e50e6e2
Create rule S7159: Replicate API tokens should not be disclosed (#4494) 2024-11-13 15:59:09 +01:00
Jonas Wielage
8093bf5e8a
Modify S2068: Description should not recommend customizing it with tokens (#4496) 2024-11-13 13:43:20 +01:00
github-actions[bot]
64ab6905ed
Create rule S7152: Datadog secrets should not be disclosed (APPSEC-2240) (#4487) 2024-11-13 12:30:24 +00:00
github-actions[bot]
cb5723187a
Create rule S7145: LaunchDarkly API tokens should not be disclosed (#4477)
* Create rule S7145

* Add skeleton

* added first version

---------

Co-authored-by: loris-s-sonarsource <loris-s-sonarsource@users.noreply.github.com>
Co-authored-by: Loris Sierra <loris.sierra@sonarsource.com>
Co-authored-by: Loris S. <91723853+loris-s-sonarsource@users.noreply.github.com>
2024-11-13 12:11:37 +01:00
github-actions[bot]
0f12c897a3
Create rule S7147: Atlassian secrets should not be disclosed (APPSEC-2238) (#4481) 2024-11-13 08:56:23 +00:00
SonarTech
a34b0af0cb update coverage information 2024-11-13 02:42:52 +00:00
github-actions[bot]
90bbc1c99e
Create rule S7149: Doppler auth tokens should not be disclosed (#4483) 2024-11-12 17:23:43 +01:00
Pierre-Loup
a7bff601e5
Remove mention to "pornographic material" in shared phising.adoc (#4480) 2024-11-12 12:27:14 +01:00
Jonas Wielage
d870aef0b5
SONARIAC-1789 Align software quality impact and defaultSeverities on IaC Rules (#4485) 2024-11-12 12:08:46 +01:00
github-actions[bot]
25b5633b36
Create rule S7148: Mailchimp API keys should not be disclosed (APPSEC-2242) (#4482) 2024-11-12 10:50:35 +00:00
github-actions[bot]
c36fc7cc5f
Create rule S7144: Bitbucket keys should not be disclosed (APPSEC-1864) (#4476) 2024-11-12 11:42:40 +01:00
github-actions[bot]
78497b8212
Create rule S7132 std::string_view::data() should not be passed to API expecting C-style strings CPP-5820 2024-11-12 08:40:58 +00:00
github-actions[bot]
b2e18a89be
Create rule S7116: The first element of an array should not be accessed implicitly CPP-5674 2024-11-12 09:32:50 +01:00
Martin Strecker
65c443e810
Update impact or defaultSeverity to match each other (#4444)
* Update impact or defaultSeverity to match each other

* Change S6776

* Update S6776
2024-11-11 10:40:51 +01:00
github-actions[bot]
06c42fd02c
Create rule S7146 (#4479) 2024-11-08 15:39:40 +01:00
github-actions[bot]
0a28d7405a
Create rule S7130: First/Single should be used instead of FirstOrDefault/SingleOrDefault on collections that are known to be not empty (#4432) 2024-11-08 10:08:55 +00:00
SonarTech
a15cfd94e2 update coverage information 2024-11-08 02:42:44 +00:00
github-actions[bot]
8c81f74b33
Create rule S7129: String literal should not be assigned to mutable char pointers (CPP-5659) 2024-11-07 17:11:38 +00:00
github-actions[bot]
2c08a31abb
Create rule S7118 String methods should be used to query content instead of C apis CPP-5790 2024-11-07 18:10:58 +01:00
github-actions[bot]
289e7cf5e9
Create rule S7121 Calls to c_str() should not implicitly recreate strings or string_views CPP-3435 2024-11-07 18:09:33 +01:00
github-actions[bot]
ee3e232e09
Create rule S7119: Global should not depend on possibly not yet initialized variables CPP-5655 2024-11-07 16:49:28 +00:00
github-actions[bot]
ed65d9debb
Create rule S7142: Supabase API keys should not be disclosed (APPSEC-2231) (#4474) 2024-11-07 15:53:20 +00:00
Pavel Mikula
d81f6652ed
Add Jira integration (#4426) 2024-11-07 16:41:20 +01:00