File tree
480 files changed
+15825
-5289
lines changed- .github/workflows
- config
- cpp/ql
- lib
- experimental/semmle/code/cpp/dataflow
- semmle/code/cpp/models
- implementations
- interfaces
- src/experimental/Security/CWE/CWE-193
- test/library-tests/ir/range-analysis
- csharp
- ql
- campaigns/Solorigate
- src
- test/Solorigate
- consistency-queries
- integration-tests/all-platforms/dotnet_run
- lib/semmle/code/csharp/dataflow/internal
- src
- API Abuse
- CSI
- Concurrency
- Dead Code
- Language Abuse
- Linq
- Security Features
- CWE-022
- CWE-078
- CWE-079
- CWE-089
- CWE-090
- CWE-091
- CWE-094
- CWE-099
- CWE-112
- CWE-114
- CWE-117
- CWE-134
- CWE-201
- CWE-209
- CWE-312
- CWE-321
- CWE-327
- CWE-384
- CWE-611
- CWE-643
- CWE-730
- CWE-807
- change-notes
- experimental
- CWE-918
- Security Features/backdoor
- test
- experimental
- CWE-918
- Security Features/backdoor
- library-tests/dataflow
- global
- local
- query-tests
- API Abuse
- ClassDoesNotImplementEquals
- NoDisposeCallOnLocalIDisposable
- Concurrency/SynchSetUnsynchGet
- Dead Code
- NonAssignedFields
- Tests
- Language Abuse
- ForeachCapture
- UselessIsBeforeAs
- Nullness
- Security Features
- CWE-022/TaintedPath
- CWE-078
- CWE-079/StoredXSS
- CWE-089
- CWE-090
- CWE-091/XMLInjection
- CWE-094
- CWE-099
- CWE-112
- CWE-114/AssemblyPathInjection
- CWE-117
- CWE-134
- CWE-201/ExposureInTransmittedData
- CWE-209
- CWE-312
- CWE-321/HardcodedSymmetricEncryptionKey
- CWE-327
- DontInstallRootCert
- InsecureSQLConnection
- CWE-338
- CWE-384
- CWE-611
- CWE-643
- CWE-730/ReDoS
- CWE-807
- tools
- docs/codeql
- codeql-overview
- support/reusables
- javascript/ql
- lib/semmle/javascript
- frameworks/data/internal
- security
- dataflow
- src/Security
- CWE-079
- CWE-094
- test/query-tests/Security
- CWE-116
- BadTagFilter
- IncompleteSanitization
- CWE-798
- java
- kotlin-extractor/src/main
- java/com/semmle/extractor/java
- kotlin
- utils
- ql
- consistency-queries
- integration-tests/posix-only/kotlin
- gradle_kotlinx_serialization
- jvmoverloads_flow
- lib
- change-notes
- semmle/code/java
- src
- Advisory/Documentation
- Frameworks/Spring
- Architecture/Refactoring Opportunities
- Violations of Best Practice
- Language Abuse
- Likely Bugs
- Collections
- Comparison
- Concurrency
- Likely Typos
- Nullness
- Serialization
- Statements
- Performance
- Security/CWE
- CWE-022
- CWE-023
- CWE-078
- CWE-079
- CWE-089
- CWE-090
- CWE-094
- CWE-113
- CWE-117
- CWE-129
- CWE-134
- CWE-190
- CWE-266
- CWE-295
- CWE-297
- CWE-312
- CWE-319
- CWE-347
- CWE-367
- CWE-470
- CWE-502
- CWE-522
- CWE-601
- CWE-611
- CWE-643
- CWE-681
- CWE-730
- CWE-732
- CWE-780
- CWE-807
- CWE-917
- CWE-918
- CWE-925
- CWE-927
- CWE-940
- Violations of Best Practice
- Dead Code
- Undesirable Calls
- change-notes
- experimental/Security/CWE
- CWE-020
- CWE-036
- CWE-078
- CWE-094
- CWE-1004
- CWE-297
- CWE-299
- CWE-327
- CWE-489
- CWE-502
- CWE-548
- CWE-600
- CWE-939
- utils/stub-generator
- test
- experimental/query-tests/security
- CWE-020
- CWE-078
- CWE-297
- CWE-299
- CWE-327
- CWE-502
- CWE-548
- CWE-600
- kotlin/library-tests
- classes
- controlflow
- basic/CONSISTENCY
- dominance/CONSISTENCY
- data-classes
- enum
- exprs
- CONSISTENCY
- java-lang-number-conversions/CONSISTENCY
- java-map-methods
- CONSISTENCY
- jvmoverloads-annotation
- jvmoverloads_flow
- jvmoverloads_generics
- methods
- modifiers
- library-tests/frameworks/JaxWs
- query-tests
- ContradictoryTypeChecks
- InefficientOutputStream
- IteratorRemoveMayFail
- Javadoc
- MissingInstanceofInEquals
- Nullness
- PartiallyMaskedCatch
- SelfAssignment
- Stubs
- Minimal
- testlib
- org/test
- UselessNullCheck
- WrongNanComparison
- security
- CWE-022/semmle/tests
- CWE-023/semmle/tests
- CWE-078
- CWE-089/semmle/examples
- CWE-090
- CWE-094
- CWE-113/semmle/tests
- CWE-129/semmle/tests
- CWE-134/semmle/tests
- CWE-190/semmle/tests
- CWE-297
- CWE-311/CWE-319
- CWE-367/semmle/tests
- CWE-601/semmle/tests
- CWE-611
- CWE-681/semmle/tests
- CWE-732/semmle/tests
- CWE-807/semmle/tests
- python/ql
- lib/semmle/python
- dataflow/new
- internal
- frameworks
- data/internal
- security
- src
- Security/CWE-215
- experimental/semmle/python/frameworks
- test/query-tests/Security
- CWE-078-CommandInjection
- CWE-079-Jinja2WithoutEscaping
- CWE-116-BadTagFilter
- CWE-209-StackTraceExposure
- CWE-215-FlaskDebug
- CWE-327-InsecureProtocol
- CWE-601-UrlRedirect
- CWE-732-WeakFilePermissions
- ruby/ql
- lib
- change-notes
- codeql/ruby
- ast
- internal
- dataflow
- internal
- tainttrackingforregexp
- frameworks
- core
- data/internal
- internal
- stdlib
- regexp/internal
- security
- typetracking
- src
- change-notes
- queries
- analysis
- security/cwe-078
- test
- library-tests
- dataflow
- api-graphs
- array-flow
- global
- hash-flow
- local
- summaries
- type-tracker
- frameworks
- action_view
- active_support
- app/controllers
- pathname
- modules
- query-tests/security
- cwe-020/MissingRegExpAnchor
- cwe-022
- cwe-078
- cwe-079
- app/views/foo
- bars
- stores
- cwe-116/IncompleteMultiCharacterSanitization
- cwe-502/unsafe-deserialization
- cwe-611
- libxml-backend
- xxe
- swift/ql
- lib
- codeql/swift
- dataflow
- elements/decl
- frameworks/StandardLibrary
- src/queries/Security
- CWE-079
- CWE-135
- CWE-311
- CWE-328
- ECB-Encryption
- test
- library-tests/dataflow/flowsources
- query-tests/Security
- CWE-311
- ECB-Encryption
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
480 files changed
+15825
-5289
lines changedLines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
27 | 27 |
| |
28 | 28 |
| |
29 | 29 |
| |
30 |
| - | |
| 30 | + | |
31 | 31 |
| |
32 | 32 |
| |
33 | 33 |
| |
|
Lines changed: 3 additions & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
33 | 33 |
| |
34 | 34 |
| |
35 | 35 |
| |
36 |
| - | |
| 36 | + | |
37 | 37 |
| |
| 38 | + | |
38 | 39 |
| |
39 | 40 |
| |
40 | 41 |
| |
| |||
69 | 70 |
| |
70 | 71 |
| |
71 | 72 |
| |
72 |
| - | |
| 73 | + | |
73 | 74 |
| |
74 | 75 |
| |
75 | 76 |
| |
|
Lines changed: 21 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
133 | 133 |
| |
134 | 134 |
| |
135 | 135 |
| |
| 136 | + | |
| 137 | + | |
| 138 | + | |
| 139 | + | |
| 140 | + | |
| 141 | + | |
| 142 | + | |
| 143 | + | |
| 144 | + | |
| 145 | + | |
| 146 | + | |
| 147 | + | |
136 | 148 |
| |
137 | 149 |
| |
138 | 150 |
| |
| |||
169 | 181 |
| |
170 | 182 |
| |
171 | 183 |
| |
| 184 | + | |
| 185 | + | |
| 186 | + | |
| 187 | + | |
172 | 188 |
| |
173 | 189 |
| |
174 | 190 |
| |
| |||
202 | 218 |
| |
203 | 219 |
| |
204 | 220 |
| |
| 221 | + | |
| 222 | + | |
| 223 | + | |
| 224 | + | |
205 | 225 |
| |
206 | 226 |
| |
207 | 227 |
| |
| 228 | + | |
208 | 229 |
| |
209 | 230 |
| |
210 | 231 |
| |
|
Lines changed: 227 additions & 39 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
205 | 205 |
| |
206 | 206 |
| |
207 | 207 |
| |
| 208 | + | |
| 209 | + | |
| 210 | + | |
208 | 211 |
| |
209 |
| - | |
| 212 | + | |
| 213 | + | |
| 214 | + | |
| 215 | + | |
| 216 | + | |
| 217 | + | |
| 218 | + | |
| 219 | + | |
| 220 | + | |
210 | 221 |
| |
211 |
| - | |
212 |
| - | |
213 |
| - | |
214 |
| - | |
215 |
| - | |
216 |
| - | |
217 |
| - | |
218 |
| - | |
219 |
| - | |
220 |
| - | |
221 |
| - | |
222 |
| - | |
| 222 | + | |
| 223 | + | |
| 224 | + | |
| 225 | + | |
| 226 | + | |
| 227 | + | |
| 228 | + | |
| 229 | + | |
| 230 | + | |
| 231 | + | |
| 232 | + | |
| 233 | + | |
| 234 | + | |
| 235 | + | |
| 236 | + | |
| 237 | + | |
| 238 | + | |
| 239 | + | |
| 240 | + | |
| 241 | + | |
| 242 | + | |
| 243 | + | |
| 244 | + | |
| 245 | + | |
| 246 | + | |
| 247 | + | |
| 248 | + | |
| 249 | + | |
| 250 | + | |
223 | 251 |
| |
224 | 252 |
| |
225 |
| - | |
226 |
| - | |
227 |
| - | |
228 |
| - | |
229 |
| - | |
230 |
| - | |
231 |
| - | |
232 |
| - | |
| 253 | + | |
| 254 | + | |
| 255 | + | |
| 256 | + | |
| 257 | + | |
| 258 | + | |
| 259 | + | |
| 260 | + | |
| 261 | + | |
| 262 | + | |
| 263 | + | |
| 264 | + | |
| 265 | + | |
| 266 | + | |
| 267 | + | |
| 268 | + | |
| 269 | + | |
| 270 | + | |
| 271 | + | |
| 272 | + | |
| 273 | + | |
| 274 | + | |
| 275 | + | |
| 276 | + | |
| 277 | + | |
| 278 | + | |
| 279 | + | |
| 280 | + | |
| 281 | + | |
| 282 | + | |
| 283 | + | |
| 284 | + | |
| 285 | + | |
| 286 | + | |
| 287 | + | |
| 288 | + | |
233 | 289 |
| |
234 |
| - | |
| 290 | + | |
| 291 | + | |
| 292 | + | |
| 293 | + | |
| 294 | + | |
| 295 | + | |
| 296 | + | |
| 297 | + | |
| 298 | + | |
| 299 | + | |
| 300 | + | |
| 301 | + | |
| 302 | + | |
| 303 | + | |
| 304 | + | |
| 305 | + | |
| 306 | + | |
| 307 | + | |
| 308 | + | |
| 309 | + | |
| 310 | + | |
| 311 | + | |
| 312 | + | |
| 313 | + | |
| 314 | + | |
235 | 315 |
| |
| 316 | + | |
236 | 317 |
| |
237 |
| - | |
238 |
| - | |
239 |
| - | |
240 |
| - | |
241 |
| - | |
242 |
| - | |
243 |
| - | |
244 |
| - | |
| 318 | + | |
| 319 | + | |
| 320 | + | |
245 | 321 |
| |
246 |
| - | |
247 |
| - | |
248 |
| - | |
| 322 | + | |
249 | 323 |
| |
250 |
| - | |
| 324 | + | |
251 | 325 |
| |
252 |
| - | |
253 |
| - | |
254 |
| - | |
255 |
| - | |
| 326 | + | |
256 | 327 |
| |
257 | 328 |
| |
258 |
| - | |
| 329 | + | |
| 330 | + | |
| 331 | + | |
| 332 | + | |
| 333 | + | |
| 334 | + | |
| 335 | + | |
| 336 | + | |
| 337 | + | |
| 338 | + | |
| 339 | + | |
| 340 | + | |
| 341 | + | |
| 342 | + | |
| 343 | + | |
| 344 | + | |
| 345 | + | |
| 346 | + | |
| 347 | + | |
| 348 | + | |
| 349 | + | |
| 350 | + | |
259 | 351 |
| |
260 | 352 |
| |
261 | 353 |
| |
| |||
294 | 386 |
| |
295 | 387 |
| |
296 | 388 |
| |
| 389 | + | |
| 390 | + | |
| 391 | + | |
| 392 | + | |
| 393 | + | |
| 394 | + | |
| 395 | + | |
| 396 | + | |
| 397 | + | |
| 398 | + | |
| 399 | + | |
| 400 | + | |
| 401 | + | |
| 402 | + | |
| 403 | + | |
| 404 | + | |
| 405 | + | |
| 406 | + | |
| 407 | + | |
| 408 | + | |
| 409 | + | |
| 410 | + | |
| 411 | + | |
| 412 | + | |
| 413 | + | |
| 414 | + | |
| 415 | + | |
| 416 | + | |
| 417 | + | |
| 418 | + | |
| 419 | + | |
| 420 | + | |
| 421 | + | |
| 422 | + | |
| 423 | + | |
| 424 | + | |
| 425 | + | |
| 426 | + | |
| 427 | + | |
| 428 | + | |
| 429 | + | |
| 430 | + | |
| 431 | + | |
| 432 | + | |
| 433 | + | |
| 434 | + | |
| 435 | + | |
| 436 | + | |
| 437 | + | |
| 438 | + | |
| 439 | + | |
| 440 | + | |
| 441 | + | |
| 442 | + | |
| 443 | + | |
| 444 | + | |
| 445 | + | |
| 446 | + | |
| 447 | + | |
| 448 | + | |
| 449 | + | |
| 450 | + | |
| 451 | + | |
| 452 | + | |
| 453 | + | |
| 454 | + | |
| 455 | + | |
| 456 | + | |
| 457 | + | |
| 458 | + | |
| 459 | + | |
| 460 | + | |
| 461 | + | |
| 462 | + | |
| 463 | + | |
| 464 | + | |
| 465 | + | |
| 466 | + | |
| 467 | + | |
| 468 | + | |
| 469 | + | |
| 470 | + | |
| 471 | + | |
| 472 | + | |
| 473 | + | |
| 474 | + | |
| 475 | + | |
| 476 | + | |
| 477 | + | |
| 478 | + | |
| 479 | + | |
| 480 | + | |
| 481 | + | |
| 482 | + | |
| 483 | + | |
| 484 | + |
0 commit comments