File tree
914 files changed
+40987
-9309
lines changed- .github/workflows
- cpp/ql
- lib
- change-notes
- experimental/semmle/code/cpp
- rangeanalysis
- extensions
- security
- semantic
- analysis
- semmle/code/cpp
- dataflow/internal
- tainttracking1
- ir
- dataflow/internal
- tainttracking1
- implementation/raw/internal
- security
- boostorg/asio
- src
- Critical
- Likely Bugs
- Conversion
- Format
- Leap Year
- Memory Management
- Protocols
- Security/CWE
- CWE-020
- ir
- CWE-022
- CWE-078
- CWE-129
- CWE-190
- CWE-295
- CWE-311
- CWE-313
- CWE-319
- CWE-326
- CWE-428
- CWE-497
- CWE-611
- CWE-732
- experimental
- Likely Bugs
- Security/CWE
- CWE-078
- CWE-190
- CWE-193
- CWE-359
- test
- examples/docs-examples/analyzing-data-flow-in-cpp
- experimental/library-tests/rangeanalysis/strlenliteral
- library-tests
- CPP-205
- dataflow
- additional-flow-to-parameter
- crement
- ir
- modulus-analysis
- range-analysis
- sign-analysis
- ssa
- lambdas/captures
- syntax-zoo
- templates/extern
- csharp/ql
- lib
- change-notes
- semmle/code
- asp
- csharp
- dataflow
- internal
- rangeanalysis
- tainttracking1
- security
- cryptography
- dataflow
- src
- Security Features
- CWE-011
- CWE-078
- CWE-094
- CWE-321
- CWE-359
- CWE-807
- change-notes
- utils/modelgenerator
- internal
- test
- library-tests/dataflow/external-models
- query-tests/Security Features/CWE-011
- bad1
- bad2
- good1
- good2
- docs/codeql
- codeql-language-guides
- reusables
- go/ql/lib
- change-notes
- semmle/go/dataflow/internal
- tainttracking1
- javascript
- documentation
- ql
- integration-tests/all-platforms/diagnostics/internal-error
- src
- lib
- semmle/javascript
- frameworks/data/internal
- security/dataflow
- src
- Security/CWE-327
- change-notes
- test
- library-tests
- CallGraphs/FullTest
- TypeTracking
- frameworks/Express
- query-tests/Security
- CWE-079
- DomBasedXss
- XssThroughDom
- CWE-094/CodeInjection
- CWE-327
- CWE-400/ReDoS
- java
- documentation/library-coverage
- kotlin-extractor
- ql
- lib
- change-notes
- ext
- semmle/code
- java
- dataflow
- internal
- rangeanalysis
- tainttracking1
- frameworks
- android
- google
- jackson
- security
- regexp
- src
- Security/CWE
- CWE-022
- CWE-074
- CWE-078
- CWE-079
- CWE-089
- CWE-090
- CWE-094
- CWE-113
- CWE-117
- CWE-129
- CWE-134
- CWE-190
- CWE-200
- CWE-209
- CWE-266
- CWE-297
- CWE-327
- CWE-441
- CWE-470
- CWE-489
- CWE-522
- CWE-532
- CWE-601
- CWE-611
- CWE-614
- CWE-643
- CWE-681
- CWE-730
- CWE-749
- CWE-780
- CWE-807
- CWE-917
- CWE-918
- CWE-927
- CWE-940
- Telemetry
- change-notes
- experimental/Security/CWE
- CWE-078
- CWE-522
- utils/modelgenerator
- internal
- test
- TestUtilities
- experimental/query-tests/security/CWE-522
- ext
- TestModels
- TopJdkApis
- library-tests
- dataflow
- external-models
- inoutbarriers
- partial
- range-analysis
- state
- frameworks/netty
- generated
- manual
- query-tests
- Telemetry
- SupportedExternalApis
- UnsupportedExternalAPIs
- security
- CWE-074
- CWE-094
- CWE-117
- CWE-266
- CWE-441
- CWE-470
- CWE-489/webview-debugging
- CWE-522
- CWE-532
- CWE-730
- CWE-749
- CWE-780
- CWE-917
- CWE-918
- CWE-927
- CWE-940
- stubs/netty-4.1.x/io/netty
- buffer
- channel
- handler/codec
- base64
- http2
- http
- cookie
- multipart
- websocketx
- util
- collection
- concurrent
- python/ql
- lib
- change-notes
- semmle/python
- dataflow/new/internal
- tainttracking1
- frameworks
- data/internal
- src
- Expressions
- Security/CWE-327
- experimental
- Security
- CWE-208
- TimingAttackAgainstHash
- TimingAttackAgainstHeaderValue
- TimingAttackAgainstSensitiveInfo
- CWE-327/Azure
- semmle/python/security
- test
- experimental
- dataflow
- coverage-py2
- coverage-py3
- coverage
- variable-capture
- import-resolution
- query-tests/Security
- CWE-208
- TimingAttackAgainstHash
- TimingAttackAgainstHeaderValue
- TimingAttackAgainstSensitiveInfo
- CWE-327-UnsafeUsageOfClientSideEncryptionVersion
- library-tests/frameworks
- aiosqlite
- asyncpg
- cassandra-driver
- stdlib
- query-tests/Security
- CWE-327-InsecureProtocol
- CWE-730-PolynomialReDoS
- ql
- autobuilder
- buramu
- extractor
- src
- bin
- generator
- src
- node-types
- src
- ql/src
- codeql_ql
- ast/internal
- queries/diagnostics
- scripts
- ruby
- actions/create-extractor-pack
- doc
- extractor
- src
- bin
- generator
- ql
- lib
- change-notes
- codeql/ruby
- ast
- internal
- dataflow
- internal
- tainttracking1
- frameworks/data/internal
- security
- src
- change-notes
- queries/security
- cwe-079
- cwe-598
- test
- library-tests
- ast
- calls
- operations
- controlflow/graph
- dataflow
- array-flow
- flow-summaries
- global
- hash-flow
- local
- params
- pathname-flow
- string-flow
- summaries
- type-tracker
- frameworks
- active_record
- active_resource
- active_storage
- active_support
- files
- pathname
- modules
- variables
- query-tests
- experimental
- TemplateInjection
- cwe-022-ZipSlip
- manually-check-http-verb
- security
- cwe-022
- cwe-078
- CommandInjection
- KernelOpen
- cwe-079
- cwe-089
- cwe-094
- CodeInjection
- UnsafeCodeConstruction
- cwe-117
- cwe-1333-polynomial-redos
- lib
- cwe-1333-regexp-injection
- cwe-209
- cwe-312
- cwe-502
- oj-global-options
- unsafe-deserialization
- cwe-506
- cwe-598
- cwe-611
- libxml-backend
- xxe
- cwe-732
- cwe-798
- cwe-807-user-controlled-bypass
- cwe-829
- cwe-912
- cwe-918
- decompression-api
- scripts
- swift
- downgrades/e646f9e0308ec7135c83c0fdf96896d2737a8013
- extractor
- infra
- translators
- integration-tests/posix-only/deduplication
- ql
- lib
- codeql/swift
- controlflow
- internal
- dataflow
- internal
- tainttracking1
- elements
- decl
- expr
- pattern
- type
- generated
- decl
- security
- upgrades/c2f01f2beb67e5a57e9df9b6d1c51e35e8d5b0a2
- src/queries
- Security
- CWE-1204
- CWE-135
- CWE-259
- CWE-311
- CWE-312
- CWE-321
- CWE-327
- CWE-328
- CWE-757
- CWE-760
- CWE-916
- Summary
- test
- extractor-tests
- declarations
- patterns
- statements
- library-tests
- ast
- controlflow/graph
- dataflow
- dataflow
- taint/core
- elements
- decl/abstractfunctiondecl
- type/nominaltype
- query-tests/Security
- CWE-135
- CWE-311
- CWE-916
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
914 files changed
+40987
-9309
lines changedLines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
8 | 8 |
| |
9 | 9 |
| |
10 | 10 |
| |
| 11 | + | |
11 | 12 |
| |
12 | 13 |
| |
13 | 14 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
12 | 12 |
| |
13 | 13 |
| |
14 | 14 |
| |
15 |
| - | |
| 15 | + | |
16 | 16 |
| |
17 | 17 |
| |
18 | 18 |
| |
|
Lines changed: 66 additions & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
48 | 48 |
| |
49 | 49 |
| |
50 | 50 |
| |
| 51 | + | |
| 52 | + | |
| 53 | + | |
51 | 54 |
| |
52 | 55 |
| |
53 | 56 |
| |
| |||
78 | 81 |
| |
79 | 82 |
| |
80 | 83 |
| |
81 |
| - | |
82 |
| - | |
| 84 | + | |
| 85 | + | |
| 86 | + | |
| 87 | + | |
| 88 | + | |
| 89 | + | |
| 90 | + | |
| 91 | + | |
| 92 | + | |
| 93 | + | |
| 94 | + | |
| 95 | + | |
83 | 96 |
| |
84 | 97 |
| |
85 | 98 |
| |
| |||
227 | 240 |
| |
228 | 241 |
| |
229 | 242 |
| |
| 243 | + | |
| 244 | + | |
| 245 | + | |
| 246 | + | |
| 247 | + | |
| 248 | + | |
| 249 | + | |
| 250 | + | |
| 251 | + | |
| 252 | + | |
| 253 | + | |
| 254 | + | |
| 255 | + | |
| 256 | + | |
| 257 | + | |
| 258 | + | |
| 259 | + | |
| 260 | + | |
| 261 | + | |
| 262 | + | |
| 263 | + | |
| 264 | + | |
| 265 | + | |
| 266 | + | |
| 267 | + | |
| 268 | + | |
| 269 | + | |
| 270 | + | |
| 271 | + | |
| 272 | + | |
| 273 | + | |
| 274 | + | |
| 275 | + | |
| 276 | + | |
| 277 | + | |
| 278 | + | |
| 279 | + | |
| 280 | + | |
| 281 | + | |
| 282 | + | |
| 283 | + | |
| 284 | + | |
| 285 | + | |
| 286 | + | |
| 287 | + | |
| 288 | + | |
| 289 | + | |
| 290 | + | |
| 291 | + | |
| 292 | + | |
| 293 | + |
Lines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
4 | 4 |
| |
5 | 5 |
| |
6 | 6 |
| |
| 7 | + | |
7 | 8 |
| |
8 | 9 |
| |
9 | 10 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 | 1 |
| |
2 | 2 |
| |
3 | 3 |
| |
4 |
| - | |
| 4 | + |
Lines changed: 6 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + |
Lines changed: 4 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + |
Lines changed: 4 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + |
Lines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
3 | 3 |
| |
4 | 4 |
| |
5 | 5 |
| |
| 6 | + |
Lines changed: 18 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + |
0 commit comments