File tree
532 files changed
+50708
-32236
lines changed- config
- cpp/ql
- lib
- change-notes
- semmle/code/cpp
- dataflow/internal
- ir
- dataflow/internal
- implementation
- internal
- raw/internal
- internal
- test
- experimental/query-tests/Security/CWE
- CWE-119
- CWE-193/pointer-deref
- library-tests
- dataflow/dataflow-tests
- ir/ir
- syntax-zoo
- query-tests/Likely Bugs/Format/NonConstantFormat
- csharp
- documentation/library-coverage
- ql
- integration-tests
- all-platforms
- diag_dotnet_incompatible
- diag_missing_project_files
- diag_missing_xamarin_sdk
- dotnet_run
- posix-only
- diag_autobuild_script
- diag_multiple_scripts
- windows-only
- diag_autobuild_script
- diag_multiple_scripts
- lib
- ext
- semmle/code
- cil
- csharp
- dataflow
- internal
- security/dataflow/flowsinks
- src
- Security Features/CWE-838
- change-notes
- experimental/ir/implementation/internal
- utils/modelgenerator/internal
- test
- library-tests
- csharp7
- dataflow
- async
- collections
- content
- external-models
- fields
- global
- tuples
- types
- frameworks/EntityFramework
- query-tests/Security Features
- CWE-079/StoredXSS
- CWE-312
- CWE-338
- CWE-359
- docs/codeql
- query-help
- reusables
- go/ql
- lib/semmle/go
- dataflow/internal
- security
- src/experimental/CWE-79
- test
- experimental/CWE-79
- query-tests/Security/CWE-079
- javascript
- extractor
- lib/typescript/src
- src/com/semmle/js
- extractor
- parser
- tests/json/output/trap
- ql
- lib/semmle/javascript
- dataflow
- frameworks
- security
- dataflow
- regexp
- src/change-notes
- test
- library-tests
- DOM
- JSON
- TypeScript/RegressionTests/GenericTypeAlias
- frameworks
- Angular2
- Express
- src
- typed_src
- HTTP-heuristics
- Nest
- query-tests/Security
- CWE-079/DomBasedXss
- CWE-502
- java
- documentation/library-coverage
- ql
- lib
- change-notes
- ext
- semmle/code/java
- dataflow/internal
- src
- Metrics/Summaries
- Telemetry
- utils/modelgenerator/internal
- test
- TestUtilities
- experimental/query-tests/security
- CWE-020
- CWE-089/src/main
- CWE-200
- CWE-299
- CWE-327
- CWE-400
- CWE-601
- ext/TestModels
- library-tests
- dataflow
- partial
- taint
- frameworks
- JaxWs
- android/slice
- netty/manual
- okhttp
- retrofit
- spring/util
- query-tests
- Metrics/GeneratedVsManualCoverage/TopJdkApisTest
- TopJdkApis/java/lang
- security
- CWE-022/semmle/tests
- mad
- CWE-078
- CWE-190/semmle/tests
- misc/bazel
- python
- downgrades/0355ecf0ac589e66467a378e0e9d60f41ee4a757
- ql
- lib
- change-notes
- semmle/python
- dataflow/new/internal
- frameworks
- upgrades/47e552c4357a04c5735355fad818630daee4a5ac
- src
- Security/CWE-295
- experimental/Security/CWE-074/paramiko
- test
- experimental
- dataflow
- TestUtil
- basic
- fieldflow
- tainttracking/basic
- query-tests/Security
- CWE-022-UnsafeUnpacking
- CWE-074/paramiko
- library-tests/Yaml
- query-tests/Security/CWE-295-MissingHostKeyValidation
- ql
- ruby/ql
- lib/codeql/ruby
- dataflow/internal
- frameworks
- src
- experimental/template-injection/examples
- queries/meta/internal
- test
- library-tests
- dataflow
- array-flow
- call-sensitivity
- flow-summaries
- global
- hash-flow
- local
- params
- pathname-flow
- ssa-flow
- string-flow
- summaries
- frameworks
- action_controller
- action_mailer
- active_support
- arel
- json
- sinatra
- query-tests
- experimental
- TemplateInjection
- cwe-022-ZipSlip
- manually-check-http-verb
- weak-params
- security
- cwe-020/MissingFullAnchor
- cwe-022
- cwe-078
- CommandInjection
- KernelOpen
- UnsafeShellCommandConstruction
- cwe-079
- cwe-089
- cwe-094
- CodeInjection
- UnsafeCodeConstruction
- cwe-117
- cwe-1333-polynomial-redos
- cwe-1333-regexp-injection
- cwe-134
- cwe-209
- cwe-312
- cwe-502
- oj-global-options
- unsafe-deserialization
- cwe-506
- cwe-601
- cwe-611
- libxml-backend
- xxe
- cwe-732
- cwe-798
- cwe-807-user-controlled-bypass
- cwe-829
- cwe-912
- cwe-918
- decompression-api
- swift
- downgrades/ba4171b90d0665b40e9e203bac9e3d4a0b2d03ec
- extractor
- infra
- invocation
- mangler
- translators
- trap
- integration-tests/posix-only
- cross-references
- deduplication
- hello-world
- linkage-awareness
- ql
- lib
- codeql/swift
- controlflow
- internal
- dataflow
- internal
- elements
- decl
- expr
- frameworks
- StandardLibrary
- generated
- decl
- expr
- printast
- security
- upgrades/f937d9e63094280b7ec0ef26c70310daad5c1f79
- src/queries/Security
- CWE-079
- CWE-135
- CWE-311
- CWE-312
- CWE-943
- test
- extractor-tests
- expressions
- generated
- decl
- Accessor
- CapturedDecl
- ConcreteVarDecl
- Deinitializer
- Initializer
- NamedFunction
- ParamDecl
- expr
- ExplicitClosureExpr
- InitializerRefCallExpr
- LazyInitializationExpr
- OtherInitializerRefExpr
- RebindSelfInInitializerExpr
- type/TupleType
- types
- library-tests
- ast
- controlflow/graph
- dataflow
- dataflow
- taint/core
- elements
- decl
- abstractfunctiondecl
- function
- expr/methodlookup
- query-tests/Security
- CWE-079
- CWE-089
- CWE-094
- CWE-1204
- CWE-134
- CWE-135
- CWE-259
- CWE-311
- CWE-312
- CWE-321
- CWE-327
- CWE-757
- CWE-760
- CWE-916
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
532 files changed
+50708
-32236
lines changedLines changed: 0 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
40 | 40 |
| |
41 | 41 |
| |
42 | 42 |
| |
43 |
| - | |
44 | 43 |
| |
45 | 44 |
| |
46 | 45 |
| |
|
Lines changed: 4 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + |
0 commit comments