File tree
1,401 files changed
+44675
-15698
lines changed- .github/workflows
- actions
- extractor
- ql
- extensions/immutable-actions-list
- ext
- lib
- change-notes/released
- ext/config
- src
- Security/CWE-829
- change-notes
- released
- test
- query-tests/Security/CWE-829
- .github/workflows
- cpp/ql
- lib
- change-notes
- released
- semmle/code/cpp
- commons
- dataflow
- ir/dataflow/internal
- src
- Metrics/Internal
- Security/CWE
- CWE-078
- CWE-119
- change-notes
- released
- test
- library-tests/templates/nontype_instantiations/general
- query-tests/Security/CWE
- CWE-078/semmle/ExecTainted
- CWE-119
- SAMATE
- semmle/tests
- CWE-120/semmle/tests
- csharp
- documentation/library-coverage
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- consistency-queries
- integration-tests/posix/standalone_dependencies_nuget_config_error
- lib
- change-notes
- released
- ext
- generated
- semmle/code/csharp
- controlflow
- dataflow/internal
- src
- Bad Practices
- Useless code
- change-notes
- released
- codeql-suites
- test
- library-tests
- controlflow/graph
- dataflow
- library
- local
- ssa
- query-tests
- Bad Practices/Path Combine
- Useless Code
- DefaultToString
- FutileConditional
- utils/inline-tests
- queries
- docs/codeql
- codeql-overview/codeql-changelog
- reusables
- go
- actions/test
- documentation/library-coverage
- downgrades/b3da71c3ac204b557c86e9d9c26012360bdbdccb
- extractor
- autobuilder
- configurebaseline
- dbscheme
- project
- trap
- util
- ql
- consistency-queries
- change-notes/released
- examples/snippets
- integration-tests/mixed-layout/src
- module
- vendor
- example.com/test
- workspace
- lib
- change-notes
- released
- ext
- semmle/go
- controlflow
- dataflow
- internal
- frameworks
- stdlib
- internal
- security
- upgrades/4bd57e093275e5e892dfb16b55ed4bd76ea662be
- src
- InconsistentCode
- Security
- CWE-020
- CWE-322
- change-notes/released
- experimental/Unsafe
- test
- experimental
- CWE-522-DecompressionBombs
- frameworks
- CleverGo
- Fiber
- extractor-tests
- diagnostics
- go1.14
- go1.17
- library-tests/semmle/go
- Function
- GoModExpr
- Types
- pkg1
- aliases
- MethodDefs
- defsuses
- concepts
- HTTP
- LoggerCall
- controlflow/ControlFlowGraph
- dataflow
- CallGraph
- ExternalFlowInheritance
- FlowSteps
- PromotedMethods
- SSA
- flowsources/local
- commandargs
- database
- vendor
- github.com/rqlite/gorqlite
- go.mongodb.org/mongo-driver/mongo
- environment
- file
- stdin
- frameworks
- Afero
- BeegoOrm
- CouchbaseV1
- ElazarlGoproxy
- Fasthttp
- Fiber
- GoKit
- GoMicro
- Iris
- K8sIoClientGo
- Macaron
- NoSQL
- Revel
- SQL
- Gorm
- Sqlx
- bun
- gogf
- gorqlite
- StdlibTaintFlow
- Twirp
- Yaml
- gqlgen
- query-tests
- Diagnostics
- CONSISTENCY
- InconsistentCode/UnhandledCloseWritableHandle
- Security
- CWE-022
- GorillaMuxDefault
- vendor
- github.com/gorilla/mux
- GorillaMuxSkipClean
- vendor
- github.com/gorilla/mux
- CWE-681
- javascript
- extractor
- src/com/semmle
- jcorn
- js/extractor
- ql
- lib
- change-notes
- released
- semmle/javascript
- dataflow
- internal
- frameworks
- internal/flow_summaries
- security
- regexp
- src
- change-notes
- released
- experimental/Security/CWE-918
- test
- library-tests
- CallGraphs
- AnnotatedTest
- FullTest
- FlowSummary
- TripleDot
- query-tests
- AngularJS/DuplicateDependency
- Security
- CWE-022/TaintedPath
- CWE-078
- IndirectCommandInjection
- UnsafeShellCommandConstruction
- CWE-079
- DomBasedXssWithResponseThreat
- DomBasedXss
- ReflectedXss
- StoredXss
- CWE-089/untyped
- CWE-094/CodeInjection
- CWE-352
- CWE-400/ReDoS
- CWE-601/ClientSideUrlRedirect
- CWE-730
- resources
- java
- documentation/library-coverage
- ql
- integration-tests/java/maven-sample-xml-mode-all-gbk-encoding
- src
- main
- java/com/example
- resources
- test/java/com/example
- lib
- change-notes
- released
- ext
- semmle/code/java
- dataflow
- internal
- frameworks
- spring
- stapler
- security
- src
- Likely Bugs/Concurrency
- Security/CWE
- CWE-020
- CWE-023
- CWE-079
- CWE-094
- CWE-1204
- CWE-200
- CWE-330/examples
- CWE-352
- CWE-367
- CWE-502
- CWE-522
- CWE-611
- CWE-798
- CWE-835
- CWE-925
- change-notes
- released
- codeql-suites
- experimental/Security/CWE/CWE-089
- test-kotlin1/library-tests
- compilation-units
- java-kotlin-collection-type-generic-methods
- test-kotlin2/library-tests
- compilation-units
- java-kotlin-collection-type-generic-methods
- reflection
- test
- experimental/query-tests/security/CWE-200
- library-tests
- comment-encoding
- dataflow/ssa
- errortype-with-params
- errortype
- frameworks/jdk/java.io
- pathsanitizer
- paths
- pattern-switch/dfg
- query-tests
- UnreleasedLock
- security
- CWE-022/semmle/tests
- CWE-079/semmle/tests
- CWE-1204
- CWE-352
- CWE-925
- stubs
- org.mybatis-3.5.4/org/apache/ibatis
- annotations
- jdbc
- springframework-5.3.8/org/springframework/jdbc/core/namedparam
- stapler-1.263/org/kohsuke/stapler
- interceptor
- verb
- misc
- bazel/3rdparty
- py_deps
- tree_sitter_extractors_deps
- scripts/models-as-data
- suite-helpers
- change-notes/released
- python
- extractor/tsg-python
- src
- tsp
- bindings/rust
- ql
- lib
- change-notes
- released
- src
- Functions
- Metrics/Internal
- change-notes/released
- codeql-suites
- test
- library-tests/dataflow
- coverage
- query-tests/Functions
- general
- methodArgNames
- ql
- ql
- src
- codeql_ql/ast
- queries/style
- utils/test
- internal
- test/queries/style/QlRefInlineExpectations
- tools
- ruby
- extractor
- src
- ql
- consistency-queries
- lib
- change-notes/released
- codeql/ruby
- controlflow
- internal
- dataflow/internal
- frameworks
- security
- src
- change-notes/released
- codeql-suites
- queries/performance
- examples
- test
- library-tests
- controlflow/graph
- dataflow/barrier-guards
- variables
- query-tests/performance/DatabaseQueryInLoop
- rust
- ast-generator
- src
- autobuild
- extractor
- macros
- src
- src
- config
- generated
- translate
- ql
- consistency-queries
- integration-tests
- hello-project
- hello-workspace
- workspace-with-glob
- exe
- src
- lib
- src
- other
- src
- lib
- change-notes/released
- codeql/rust
- controlflow/internal
- generated
- dataflow
- internal
- elements
- internal
- generated
- frameworks
- stdlib
- internal
- security
- ext/generated/rust
- src
- change-notes/released
- queries
- diagnostics
- summary
- unusedentities
- utils/modelgenerator/internal
- test
- extractor-tests
- generated
- IdentPat
- Path
- RecordField
- utf8
- library-tests
- controlflow-unstable
- controlflow
- CONSISTENCY
- dataflow
- global
- local
- CONSISTENCY
- modeled
- models
- pointers
- sources
- strings
- taint
- frameworks/rusqlite
- path-resolution
- variables
- query-tests
- diagnostics
- security
- CWE-089
- CWE-312
- CWE-328
- unusedentities
- utils-tests/modelgenerator
- schema
- swift
- ql
- integration-tests/posix/hello-world
- lib
- change-notes/released
- codeql/swift
- controlflow
- security
- src
- change-notes/released
- test/library-tests/controlflow/graph
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
1,401 files changed
+44675
-15698
lines changedLines changed: 3 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
12 | 12 |
| |
13 | 13 |
| |
14 | 14 |
| |
| 15 | + | |
| 16 | + | |
| 17 | + | |
15 | 18 |
| |
16 | 19 |
| |
17 | 20 |
| |
|
Lines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
3 | 3 |
| |
4 | 4 |
| |
5 | 5 |
| |
| 6 | + | |
6 | 7 |
| |
7 | 8 |
| |
8 | 9 |
| |
|
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
3 | 3 |
| |
4 | 4 |
| |
5 | 5 |
| |
| 6 | + | |
6 | 7 |
| |
7 | 8 |
| |
8 | 9 |
| |
| |||
13 | 14 |
| |
14 | 15 |
| |
15 | 16 |
| |
| 17 | + | |
16 | 18 |
| |
17 | 19 |
| |
18 | 20 |
| |
|
0 commit comments