doomedraven
a5e1eca8cc
Create pip-audit.yml
2023-11-16 13:27:25 +01:00
Willi Ballenthin
fdb96709ae
Merge pull request #1856 from doomedraven/patch-1
...
fix pydantic vuln (ReDoS)
2023-11-16 13:20:01 +01:00
doomedraven
490271e50b
fix pydantic vuln (ReDoS)
...
Regular Expression Denial of Service (ReDoS)
MEDIUM SEVERITY
Package Manager: pip
Vulnerable module: pydantic
Remediation
Upgrade pydantic to version 1.10.13, 2.4.0 or higher.
2023-11-16 10:54:59 +01:00
Capa Bot
2f60ec03af
Sync capa rules submodule
2023-11-15 09:25:02 +00:00
Willi Ballenthin
210a13d94e
Merge pull request #1850 from mandiant/dependabot/pip/mypy-1.7.0
...
build(deps-dev): bump mypy from 1.6.1 to 1.7.0
2023-11-14 11:29:59 +01:00
dependabot[bot]
0d5ff45c76
build(deps-dev): bump mypy from 1.6.1 to 1.7.0
...
Bumps [mypy](https://github.com/python/mypy ) from 1.6.1 to 1.7.0.
- [Changelog](https://github.com/python/mypy/blob/master/CHANGELOG.md )
- [Commits](https://github.com/python/mypy/compare/v1.6.1...v1.7.0 )
---
updated-dependencies:
- dependency-name: mypy
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-11-14 10:29:20 +00:00
Willi Ballenthin
11b98cb0b1
Merge pull request #1849 from mandiant/dependabot/pip/black-23.11.0
...
build(deps-dev): bump black from 23.10.1 to 23.11.0
2023-11-14 11:29:12 +01:00
dependabot[bot]
3c9ab63521
build(deps-dev): bump black from 23.10.1 to 23.11.0
...
Bumps [black](https://github.com/psf/black ) from 23.10.1 to 23.11.0.
- [Release notes](https://github.com/psf/black/releases )
- [Changelog](https://github.com/psf/black/blob/main/CHANGES.md )
- [Commits](https://github.com/psf/black/compare/23.10.1...23.11.0 )
---
updated-dependencies:
- dependency-name: black
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-11-14 10:29:05 +00:00
Willi Ballenthin
a2fde921aa
Merge pull request #1848 from mandiant/dependabot/pip/ruff-0.1.5
...
build(deps-dev): bump ruff from 0.1.4 to 0.1.5
2023-11-14 11:28:25 +01:00
Willi Ballenthin
d4f7c77be8
Merge pull request #1847 from mandiant/dependabot/pip/pyinstaller-6.2.0
...
build(deps-dev): bump pyinstaller from 6.1.0 to 6.2.0
2023-11-14 11:28:08 +01:00
dependabot[bot]
f0f95824ac
build(deps-dev): bump ruff from 0.1.4 to 0.1.5
...
Bumps [ruff](https://github.com/astral-sh/ruff ) from 0.1.4 to 0.1.5.
- [Release notes](https://github.com/astral-sh/ruff/releases )
- [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md )
- [Commits](https://github.com/astral-sh/ruff/compare/v0.1.4...v0.1.5 )
---
updated-dependencies:
- dependency-name: ruff
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-11-13 14:21:13 +00:00
dependabot[bot]
0ba5c23847
build(deps-dev): bump pyinstaller from 6.1.0 to 6.2.0
...
Bumps [pyinstaller](https://github.com/pyinstaller/pyinstaller ) from 6.1.0 to 6.2.0.
- [Release notes](https://github.com/pyinstaller/pyinstaller/releases )
- [Changelog](https://github.com/pyinstaller/pyinstaller/blob/develop/doc/CHANGES.rst )
- [Commits](https://github.com/pyinstaller/pyinstaller/compare/v6.1.0...v6.2.0 )
---
updated-dependencies:
- dependency-name: pyinstaller
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-11-13 14:20:52 +00:00
Moritz
74f70856a6
Merge pull request #1840 from mandiant/dependabot/pip/wcwidth-0.2.9
...
build(deps-dev): bump wcwidth from 0.2.8 to 0.2.9
2023-11-08 15:38:27 +01:00
Moritz
e5b7ee96fc
Merge pull request #1839 from mandiant/dependabot/pip/black-23.10.1
...
build(deps-dev): bump black from 23.10.0 to 23.10.1
2023-11-08 15:38:02 +01:00
Moritz
92d43f5327
Merge pull request #1838 from mandiant/dependabot/pip/ruamel-yaml-0.18.5
...
build(deps-dev): bump ruamel-yaml from 0.18.3 to 0.18.5
2023-11-08 15:37:31 +01:00
dependabot[bot]
48abd297a8
build(deps-dev): bump black from 23.10.0 to 23.10.1
...
Bumps [black](https://github.com/psf/black ) from 23.10.0 to 23.10.1.
- [Release notes](https://github.com/psf/black/releases )
- [Changelog](https://github.com/psf/black/blob/main/CHANGES.md )
- [Commits](https://github.com/psf/black/compare/23.10.0...23.10.1 )
---
updated-dependencies:
- dependency-name: black
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-11-07 13:16:09 +00:00
Willi Ballenthin
d64a10a287
Merge pull request #1841 from mandiant/dependabot/pip/ruff-0.1.4
...
build(deps-dev): bump ruff from 0.0.291 to 0.1.4
2023-11-07 14:15:24 +01:00
dependabot[bot]
abf83fe8cf
build(deps-dev): bump ruff from 0.0.291 to 0.1.4
...
Bumps [ruff](https://github.com/astral-sh/ruff ) from 0.0.291 to 0.1.4.
- [Release notes](https://github.com/astral-sh/ruff/releases )
- [Changelog](https://github.com/astral-sh/ruff/blob/main/CHANGELOG.md )
- [Commits](https://github.com/astral-sh/ruff/compare/v0.0.291...v0.1.4 )
---
updated-dependencies:
- dependency-name: ruff
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-11-06 14:42:18 +00:00
dependabot[bot]
6380d936ae
build(deps-dev): bump wcwidth from 0.2.8 to 0.2.9
...
Bumps [wcwidth](https://github.com/jquast/wcwidth ) from 0.2.8 to 0.2.9.
- [Release notes](https://github.com/jquast/wcwidth/releases )
- [Commits](https://github.com/jquast/wcwidth/compare/0.2.8...0.2.9 )
---
updated-dependencies:
- dependency-name: wcwidth
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-11-06 14:42:06 +00:00
dependabot[bot]
18ab8d28d9
build(deps-dev): bump ruamel-yaml from 0.18.3 to 0.18.5
...
Bumps [ruamel-yaml]() from 0.18.3 to 0.18.5.
---
updated-dependencies:
- dependency-name: ruamel-yaml
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-11-06 14:41:55 +00:00
Willi Ballenthin
348120dea9
Merge pull request #1835 from mandiant/dependabot/pip/ruamel-yaml-0.18.3
...
build(deps-dev): bump ruamel-yaml from 0.17.35 to 0.18.3
2023-11-01 12:17:22 +01:00
Willi Ballenthin
435eea1b80
Merge pull request #1834 from mandiant/dependabot/pip/pytest-7.4.3
...
build(deps-dev): bump pytest from 7.4.2 to 7.4.3
2023-11-01 12:17:12 +01:00
Willi Ballenthin
621d42a093
Merge pull request #1831 from mandiant/dependabot/pip/flake8-no-implicit-concat-0.3.5
...
build(deps-dev): bump flake8-no-implicit-concat from 0.3.4 to 0.3.5
2023-11-01 12:17:04 +01:00
Willi Ballenthin
15701c6d12
Merge pull request #1829 from mandiant/dependabot/pip/mypy-1.6.1
...
build(deps-dev): bump mypy from 1.6.0 to 1.6.1
2023-11-01 12:16:55 +01:00
Willi Ballenthin
ec7fc86dc5
Merge pull request #1828 from mandiant/dependabot/pip/types-requests-2.31.0.10
...
build(deps-dev): bump types-requests from 2.31.0.2 to 2.31.0.10
2023-11-01 12:16:46 +01:00
dependabot[bot]
8d55c2f249
build(deps-dev): bump ruamel-yaml from 0.17.35 to 0.18.3
...
Bumps [ruamel-yaml]() from 0.17.35 to 0.18.3.
---
updated-dependencies:
- dependency-name: ruamel-yaml
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-30 14:11:50 +00:00
dependabot[bot]
66607f1412
build(deps-dev): bump pytest from 7.4.2 to 7.4.3
...
Bumps [pytest](https://github.com/pytest-dev/pytest ) from 7.4.2 to 7.4.3.
- [Release notes](https://github.com/pytest-dev/pytest/releases )
- [Changelog](https://github.com/pytest-dev/pytest/blob/main/CHANGELOG.rst )
- [Commits](https://github.com/pytest-dev/pytest/compare/7.4.2...7.4.3 )
---
updated-dependencies:
- dependency-name: pytest
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-30 14:11:00 +00:00
dependabot[bot]
874faf0901
build(deps-dev): bump mypy from 1.6.0 to 1.6.1
...
Bumps [mypy](https://github.com/python/mypy ) from 1.6.0 to 1.6.1.
- [Changelog](https://github.com/python/mypy/blob/master/CHANGELOG.md )
- [Commits](https://github.com/python/mypy/compare/v1.6.0...v1.6.1 )
---
updated-dependencies:
- dependency-name: mypy
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-24 19:48:35 +00:00
Moritz
4750913fad
Merge pull request #1827 from mandiant/dependabot/pip/black-23.10.0
...
build(deps-dev): bump black from 23.9.1 to 23.10.0
2023-10-24 21:47:52 +02:00
dependabot[bot]
e7198b2aaf
build(deps-dev): bump flake8-no-implicit-concat from 0.3.4 to 0.3.5
...
Bumps [flake8-no-implicit-concat](https://github.com/10sr/flake8-no-implicit-concat ) from 0.3.4 to 0.3.5.
- [Release notes](https://github.com/10sr/flake8-no-implicit-concat/releases )
- [Changelog](https://github.com/10sr/flake8-no-implicit-concat/blob/master/CHANGELOG.md )
- [Commits](https://github.com/10sr/flake8-no-implicit-concat/compare/v0.3.4...v0.3.5 )
---
updated-dependencies:
- dependency-name: flake8-no-implicit-concat
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-23 14:47:26 +00:00
dependabot[bot]
426931c392
build(deps-dev): bump types-requests from 2.31.0.2 to 2.31.0.10
...
Bumps [types-requests](https://github.com/python/typeshed ) from 2.31.0.2 to 2.31.0.10.
- [Commits](https://github.com/python/typeshed/commits )
---
updated-dependencies:
- dependency-name: types-requests
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-23 14:47:03 +00:00
dependabot[bot]
fec1e6a947
build(deps-dev): bump black from 23.9.1 to 23.10.0
...
Bumps [black](https://github.com/psf/black ) from 23.9.1 to 23.10.0.
- [Release notes](https://github.com/psf/black/releases )
- [Changelog](https://github.com/psf/black/blob/main/CHANGES.md )
- [Commits](https://github.com/psf/black/compare/23.9.1...23.10.0 )
---
updated-dependencies:
- dependency-name: black
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-23 14:46:59 +00:00
Capa Bot
be6f87318e
Sync capa rules submodule
2023-10-20 09:50:07 +00:00
Capa Bot
772f806eb6
Sync capa rules submodule
2023-10-18 15:01:37 +00:00
Willi Ballenthin
5eaba611d1
Merge pull request #1738 from Aayush-Goel-04/Aayush-Goel-04/Issue#322
...
add com class/interface features
2023-10-18 17:00:39 +02:00
Aayush Goel
178cfce456
Merge branch 'Aayush-Goel-04/Issue#322' of https://github.com/Aayush-Goel-04/capa into Aayush-Goel-04/Issue#322
2023-10-18 16:33:37 +05:30
Aayush Goel
94cf53a1e3
Update __init__.py
2023-10-18 16:33:31 +05:30
Aayush Goel
26a2d1b4d1
Merge branch 'mandiant:master' into Aayush-Goel-04/Issue#322
2023-10-17 21:09:07 +05:30
Aayush Goel
6dbd3768ce
Update __init__.py
2023-10-17 21:04:21 +05:30
Aayush Goel
7cd5aa1c40
Added Enum for comType
2023-10-17 20:28:49 +05:30
Aayush Goel
884b714be2
loading com db only once
...
avoid loading db multiple times by caching it.
2023-10-17 19:48:06 +05:30
Willi Ballenthin
40d9587fa4
Merge pull request #1808 from mandiant/dependabot/pip/ruamel-yaml-0.17.35
...
build(deps-dev): bump ruamel-yaml from 0.17.32 to 0.17.35
2023-10-17 09:59:41 +02:00
Willi Ballenthin
430fdb074b
Merge pull request #1807 from mandiant/dependabot/pip/pre-commit-3.5.0
...
build(deps-dev): bump pre-commit from 3.4.0 to 3.5.0
2023-10-17 09:59:30 +02:00
Willi Ballenthin
0324d24490
Merge pull request #1806 from mandiant/dependabot/pip/flake8-simplify-0.21.0
...
build(deps-dev): bump flake8-simplify from 0.20.0 to 0.21.0
2023-10-17 09:59:21 +02:00
Willi Ballenthin
41c286d1a3
Merge pull request #1805 from mandiant/dependabot/pip/pyinstaller-6.1.0
...
build(deps-dev): bump pyinstaller from 6.0.0 to 6.1.0
2023-10-17 09:59:13 +02:00
Willi Ballenthin
187cf40d6f
Merge pull request #1804 from mandiant/dependabot/pip/mypy-1.6.0
...
build(deps-dev): bump mypy from 1.5.1 to 1.6.0
2023-10-17 09:58:44 +02:00
Capa Bot
c37a0e525c
Sync capa rules submodule
2023-10-16 14:53:14 +00:00
dependabot[bot]
de0c35b6ad
build(deps-dev): bump ruamel-yaml from 0.17.32 to 0.17.35
...
Bumps [ruamel-yaml](https://sourceforge.net/p/ruamel-yaml/code/ci/default/tree ) from 0.17.32 to 0.17.35.
---
updated-dependencies:
- dependency-name: ruamel-yaml
dependency-type: direct:production
update-type: version-update:semver-patch
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-16 14:18:33 +00:00
dependabot[bot]
d99b454c0e
build(deps-dev): bump pre-commit from 3.4.0 to 3.5.0
...
Bumps [pre-commit](https://github.com/pre-commit/pre-commit ) from 3.4.0 to 3.5.0.
- [Release notes](https://github.com/pre-commit/pre-commit/releases )
- [Changelog](https://github.com/pre-commit/pre-commit/blob/main/CHANGELOG.md )
- [Commits](https://github.com/pre-commit/pre-commit/compare/v3.4.0...v3.5.0 )
---
updated-dependencies:
- dependency-name: pre-commit
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-16 14:18:11 +00:00
dependabot[bot]
44f156925a
build(deps-dev): bump flake8-simplify from 0.20.0 to 0.21.0
...
Bumps [flake8-simplify](https://github.com/MartinThoma/flake8-simplify ) from 0.20.0 to 0.21.0.
- [Release notes](https://github.com/MartinThoma/flake8-simplify/releases )
- [Changelog](https://github.com/MartinThoma/flake8-simplify/blob/main/CHANGELOG.md )
- [Commits](https://github.com/MartinThoma/flake8-simplify/commits/0.21.0 )
---
updated-dependencies:
- dependency-name: flake8-simplify
dependency-type: direct:production
update-type: version-update:semver-minor
...
Signed-off-by: dependabot[bot] <support@github.com >
2023-10-16 14:17:47 +00:00