Page MenuHomePhabricator

Make taint-check understand all QueryBuilders
Closed, ResolvedPublic

Event Timeline

Change 960184 had a related patch set uploaded (by Daimona Eaytoy; author: Daimona Eaytoy):

[mediawiki/core@master] Add base taint-check annotations to SelectQueryBuilder

https://gerrit.wikimedia.org/r/960184

Daimona renamed this task from Make taint-check understand SelectQueryBuilder to Make taint-check understand all QueryBuilders.Sep 24 2023, 12:10 PM

Change 960184 merged by jenkins-bot:

[mediawiki/core@master] Add base taint-check annotations to SelectQueryBuilder

https://gerrit.wikimedia.org/r/960184

Change 961487 had a related patch set uploaded (by Daimona Eaytoy; author: Daimona Eaytoy):

[mediawiki/tools/phan/SecurityCheckPlugin@master] Hardcode taintedness of InsertQueryBuilder::row() and ::rows()

https://gerrit.wikimedia.org/r/961487

Change 960204 had a related patch set uploaded (by Daimona Eaytoy; author: Daimona Eaytoy):

[mediawiki/core@master] Add base taint-check annotations to InsertQueryBuilder

https://gerrit.wikimedia.org/r/960204

Change 961490 had a related patch set uploaded (by Daimona Eaytoy; author: Daimona Eaytoy):

[mediawiki/core@master] Add base taint-check annotations to Delete- and UpdateQueryBuilder

https://gerrit.wikimedia.org/r/961490

Change 961487 merged by jenkins-bot:

[mediawiki/tools/phan/SecurityCheckPlugin@master] Hardcode taintedness of InsertQueryBuilder::row() and ::rows()

https://gerrit.wikimedia.org/r/961487

Change 960204 merged by jenkins-bot:

[mediawiki/core@master] Add base taint-check annotations to InsertQueryBuilder

https://gerrit.wikimedia.org/r/960204

Change 961490 merged by jenkins-bot:

[mediawiki/core@master] Add base taint-check annotations to Delete- and UpdateQueryBuilder

https://gerrit.wikimedia.org/r/961490

Calling this done. Adding/improving annotations should be part of the normal development cycle.