File tree
1,986 files changed
+203922
-83344
lines changed- .github
- workflows
- actions/ql
- lib
- change-notes/released
- codeql/actions
- security
- src
- Security
- CWE-077
- CWE-094
- CWE-1395
- CWE-275
- CWE-285
- CWE-312
- CWE-349
- CWE-367
- CWE-571
- CWE-829
- Violations Of Best Practice/CodeQL
- change-notes/released
- experimental/Security
- CWE-078
- CWE-088
- CWE-829
- test/query-tests/Security/CWE-829
- .github/workflows
- config
- cpp
- downgrades
- 5340d6d5f428557632b1a50113e406430f29ef7d
- 5491582ac8511726e12fae3e2399000f9201cd9a
- 801b2f03360d78c85f51fbad9b75956fa8d58b00
- 827dbc206ea55377e032a8a934c8903fedc50fa0
- e70d0b653187b93d9688f21c9db46bb1cd46ab78
- ql
- integration-tests/header-variant-tests/clang-pch
- lib
- change-notes
- released
- experimental/quantum
- ext
- generated/glibc
- semmle/code/cpp
- commons
- controlflow
- exprs
- ir
- dataflow/internal
- implementation
- aliased_ssa
- gvn
- internal
- raw
- gvn
- internal
- internal
- unaliased_ssa
- gvn
- internal
- internal
- models/interfaces
- rangeanalysis/new
- internal/semantic/analysis
- security
- InvalidPointerDereference
- ProductFlowUtils
- upgrades
- 5491582ac8511726e12fae3e2399000f9201cd9a
- 7bc12b02a4363149f0727a4bce07952dbb9d98aa
- 801b2f03360d78c85f51fbad9b75956fa8d58b00
- 827dbc206ea55377e032a8a934c8903fedc50fa0
- e70d0b653187b93d9688f21c9db46bb1cd46ab78
- src
- Best Practices
- Critical
- Likely Bugs
- Format
- Leap Year
- Metrics
- Classes
- Dependencies
- Security/CWE
- CWE-022
- CWE-078
- CWE-079
- CWE-089
- CWE-114
- CWE-119
- CWE-120
- CWE-170
- CWE-190
- CWE-290
- CWE-295
- CWE-311
- CWE-313
- CWE-319
- CWE-326
- CWE-416
- CWE-428
- CWE-704
- CWE-732
- CWE-807
- CWE-843
- change-notes
- released
- experimental/Security/CWE
- CWE-193
- CWE-409
- jsf/4.07 Header Files
- test
- experimental/library-tests/rangeanalysis/rangeanalysis
- library-tests
- controlflow/guards
- dataflow
- asExpr
- dataflow-tests
- external-models
- fields
- taint-tests
- includes/includes
- ir/ir
- macros/inmacroexpansion
- ptr_to_member/segfault
- valuenumbering/GlobalValueNumbering
- query-tests
- Best Practices/SloppyGlobal
- Critical
- GlobalUseBeforeInit
- InitialisationNotRun
- MissingCheckScanf
- Likely Bugs/Memory Management/StrncpyFlippedArgs
- Security/CWE
- CWE-119
- SAMATE
- semmle/tests
- CWE-134/semmle
- consts
- globalVars
- CWE-295
- CWE-313
- CWE-497/semmle/tests
- CWE-611
- CWE-704
- csharp
- actions/create-extractor-pack
- documentation/library-coverage
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- lib
- change-notes/released
- ext
- semmle/code
- asp
- csharp
- dataflow/internal
- security/dataflow
- src
- Likely Bugs
- Security Features/CWE-798
- change-notes
- released
- codeql-suites
- test
- library-tests/dataflow/library
- query-tests/Security Features/CWE-502
- DeserializedDelegate
- UnsafeDeserializationUntrustedInputNewtonsoftJson
- UnsafeDeserializationUntrustedInput
- UnsafeDeserialization
- docs
- codeql
- _static
- codeql-overview/codeql-changelog
- query-help
- reusables
- go
- actions/test
- extractor
- autobuilder
- ql
- consistency-queries
- change-notes/released
- lib
- change-notes
- released
- semmle/go
- dataflow/internal
- frameworks/stdlib
- security
- src
- InconsistentCode
- Security
- CWE-322
- CWE-601
- change-notes/released
- codeql-suites
- experimental
- CWE-1004
- CWE-807
- CWE-840
- CWE-918
- test/query-tests/Security
- CWE-022
- CWE-918
- javascript
- extractor
- lib/typescript/src
- src/com/semmle
- js/extractor
- ts/extractor
- test/com/semmle/js/extractor/test
- ql
- integration-tests
- no-types
- query-suite
- lib
- change-notes
- released
- semmle/javascript
- dataflow/internal
- frameworks
- data
- internal
- security
- dataflow
- internal
- src
- Declarations
- Expressions
- Quality
- change-notes
- released
- codeql-suites
- experimental/semmle/javascript
- meta/types
- test
- experimental/TypeOrm
- library-tests
- TypeScript
- ArrayTypes
- BaseTypes
- BigInts
- CallResolution
- CallSignatureTypes
- DeclarationFiles
- EmbeddedInScript
- ExpansiveTypes
- ExternalBaseTypes
- node_modules/@types/mylib
- ExternalTypes
- node_modules/@types
- esmodule
- util
- legacy
- modern
- HasUnderlyingType
- ImportOwnPackage
- bar
- foo
- IndexTypes
- InfiniteTypes
- LexicalTypes
- LiteralTypes
- NestedLiteral
- Nullability
- PathMapping
- src/lib
- test
- PromiseType
- node_modules/@types/q
- QualifiedNameResolution
- RegressionTests
- AllowJs
- EmptyName
- ExportEqualsExpr
- GenericTypeAlias
- ImportSelf
- RecursiveTypeAlias
- SemicolonInName
- TraceResolution
- node_modules/@types/foo
- TypeRootFile
- TSConfigReferences
- src
- TypeAliases
- TypeVariableTypes
- Types
- UnderlyingTypes
- frameworks
- Electron
- Nest
- global
- local
- data
- query-tests
- Declarations/UnreachableOverloads
- Security
- CWE-078/CommandInjection
- CWE-730
- Threat-models-disabled
- Threat-models-enabled
- java
- documentation/library-coverage
- downgrades/1b8f5f4c747e4249f4731796ccaa0661c7434d8a
- kotlin-extractor
- deps
- dev
- src/main/kotlin
- utils/versions
- v_1_6_0
- v_2_2_20-Beta2
- ql
- integration-tests
- java
- android-sample-kotlin-build-script-no-wrapper
- android-sample-no-wrapper
- android-sample-old-style-kotlin-build-script-no-wrapper
- android-sample-old-style-no-wrapper
- maven-enforcer-multiple-versions
- maven-enforcer-single-version
- maven-enforcer
- query-suite
- kotlin
- all-platforms
- diagnostics/kotlin-version-too-new
- extractor_information_kotlin1
- extractor_information_kotlin2
- linux/custom_plugin
- plugin
- lib
- change-notes
- released
- config
- ext
- semmle/code
- java
- controlflow
- dataflow/internal
- dispatch
- frameworks
- apache
- security
- regexp
- upgrades/38d02c063878000356a3e5db49d5a6a8f38efe24
- src
- Language Abuse
- Likely Bugs
- Collections
- Concurrency
- Resource Leaks
- Statements
- Metrics/RefTypes
- Performance
- Security/CWE
- CWE-113
- CWE-200
- CWE-352
- CWE-502
- Telemetry
- Violations of Best Practice
- Records
- SpecialCharactersInLiterals
- Undesirable Calls
- change-notes/released
- codeql-suites
- experimental/Security/CWE
- CWE-020
- CWE-036
- CWE-073
- CWE-078
- CWE-200
- CWE-400
- CWE-625
- test-kotlin1/library-tests/controlflow
- basic
- dominance
- test-kotlin2/library-tests
- annotation_classes
- classes
- controlflow
- basic
- dominance
- exprs_typeaccess
- exprs
- methods
- test
- library-tests
- controlflow
- basic
- dominance
- guards
- java7/MultiCatch
- pattern-instanceof
- pattern-switch/cfg
- successors
- CloseReaderTest
- LoopVarReadTest
- SaveFileTest
- SchackTest
- TestBreak
- TestContinue
- TestDeclarations
- TestFinallyBreakContinue
- TestFinally
- TestLoopBranch
- TestThrow2
- TestThrow
- TestTryCatch
- TestTryWithResources
- unreachableblocks
- query-tests
- CallsToRunnableRun
- IgnoredSerializationMembersOfRecordClass
- LabelInSwitch
- NonExplicitControlAndWhitespaceCharsInLiterals
- Nullness
- security
- CWE-020
- CWE-117
- CWE-273
- CWE-501
- CWE-502
- com/example
- CWE-532
- CWE-611
- CWE-807/semmle/tests
- CWE-927
- SensitiveCommunication
- misc
- bazel/3rdparty
- py_deps
- tree_sitter_extractors_deps
- codegen
- generators
- lib
- templates
- test
- scripts
- suite-helpers
- change-notes/released
- python
- extractor
- tests/parser
- tsg-python/tsp
- src
- tree_sitter
- ql
- lib
- change-notes/released
- semmle
- crypto
- python
- concepts
- dataflow/new
- internal
- frameworks
- Stdlib
- internal
- security/dataflow
- src
- Exceptions
- Expressions
- Functions
- change-notes/released
- codeql-suites
- experimental/Security/CWE-208/TimingAttackAgainstHash
- test
- experimental
- library-tests/CallGraph-type-annotations
- query-tests/Security/CWE-208/TimingAttackAgainstHash
- query-tests
- Exceptions/general
- Functions/return_values
- ql/ql
- src
- codeql_ql
- ast
- internal
- style
- codeql
- files
- experimental
- queries
- performance
- style
- test
- experimental
- queries/style
- DeadCode
- MissingQualityMetadata
- testcases
- MissingSecurityMetadata
- ruby
- downgrades/eae6926f5000373d5eb1d82131e1ff6152b67b2c
- ql
- lib
- change-notes
- released
- codeql
- files
- ruby
- ast
- internal
- controlflow
- internal
- dataflow
- internal
- frameworks
- http_clients
- internal
- security
- internal
- regexp
- upgrades/dc51d416301df12df5b70fbc4338de6cc1f82bfd
- src
- change-notes/released
- codeql-suites
- experimental/ldap-improper-auth
- queries/variables
- test
- library-tests
- frameworks/http_clients
- security
- query-tests/experimental/ImproperLdapAuth
- rust
- ast-generator/src
- downgrades
- 319c933d9615ccf40f363548cafd51d08c74a534
- 8e9b0c516ae822286689672d1020707020128a19
- extractor/src
- generated
- translate
- ql
- integration-tests/query-suite
- lib
- change-notes
- released
- codeql/rust
- controlflow/internal
- dataflow
- internal
- elements
- internal
- generated
- frameworks
- rustcrypto
- stdlib
- tokio
- internal
- security
- internal
- upgrades
- 8e9b0c516ae822286689672d1020707020128a19
- f72a3d8d021c81c67ba046c6af15c61a79cb8163
- utils/test/internal
- src
- change-notes
- released
- queries
- diagnostics
- security
- CWE-020
- CWE-022
- CWE-089
- CWE-311
- CWE-312
- CWE-696
- CWE-770
- CWE-798
- CWE-825
- summary
- telemetry
- test
- extractor-tests
- canonical_path_disabled
- canonical_path
- generated
- Function
- Module
- Name
- SourceFile
- Visibility
- macro-expansion
- CONSISTENCY
- macro-in-library
- utf8
- library-tests
- controlflow-unstable
- controlflow
- dataflow
- global
- local
- CONSISTENCY
- modeled
- models/CONSISTENCY
- sources
- CONSISTENCY
- strings
- frameworks
- postgres
- CONSISTENCY
- rusqlite
- path-resolution
- CONSISTENCY
- sensitivedata
- CONSISTENCY
- type-inference
- CONSISTENCY
- loop
- variables
- CONSISTENCY
- query-tests
- security
- CWE-020
- CWE-022
- CONSISTENCY
- src
- CWE-089
- CONSISTENCY
- CWE-311
- CWE-312
- CONSISTENCY
- CWE-327
- CONSISTENCY
- CWE-328
- CWE-770
- CONSISTENCY
- CWE-798
- CONSISTENCY
- CWE-825
- CONSISTENCY
- unusedentities
- CONSISTENCY
- utils-tests/modelgenerator
- schema
- swift/ql
- lib
- change-notes/released
- codeql/swift
- generated
- security
- internal
- src
- change-notes/released
- test/extractor-tests/generated/decl
- Accessor
- ExtensionDecl
- NamedFunction
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
1,986 files changed
+203922
-83344
lines changedLines changed: 7 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
30 | 30 |
| |
31 | 31 |
| |
32 | 32 |
| |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
33 | 40 |
| |
34 | 41 |
| |
35 | 42 |
| |
|
Lines changed: 4 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + |
Lines changed: 23 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + |
Lines changed: 0 additions & 35 deletions
This file was deleted.
Lines changed: 0 additions & 22 deletions
This file was deleted.
Lines changed: 1 addition & 12 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 | 1 |
| |
2 | 2 |
| |
3 |
| - | |
4 |
| - | |
5 |
| - | |
6 |
| - | |
7 |
| - | |
8 |
| - | |
9 |
| - | |
10 |
| - | |
11 |
| - | |
12 |
| - | |
13 |
| - | |
14 | 3 |
| |
15 | 4 |
| |
16 | 5 |
| |
17 |
| - | |
| 6 | + | |
18 | 7 |
| |
19 | 8 |
| |
20 | 9 |
| |
|
Lines changed: 34 additions & 4 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
15 | 15 |
| |
16 | 16 |
| |
17 | 17 |
| |
18 |
| - | |
| 18 | + | |
19 | 19 |
| |
20 | 20 |
| |
21 | 21 |
| |
| |||
28 | 28 |
| |
29 | 29 |
| |
30 | 30 |
| |
31 |
| - | |
| 31 | + | |
32 | 32 |
| |
33 | 33 |
| |
34 | 34 |
| |
| |||
37 | 37 |
| |
38 | 38 |
| |
39 | 39 |
| |
40 |
| - | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
41 | 45 |
| |
42 | 46 |
| |
43 | 47 |
| |
| |||
47 | 51 |
| |
48 | 52 |
| |
49 | 53 |
| |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
| 69 | + | |
| 70 | + | |
| 71 | + | |
| 72 | + | |
| 73 | + | |
| 74 | + | |
| 75 | + | |
| 76 | + | |
50 | 77 |
| |
51 | 78 |
| |
52 | 79 |
| |
| |||
206 | 233 |
| |
207 | 234 |
| |
208 | 235 |
| |
| 236 | + | |
209 | 237 |
| |
210 | 238 |
| |
211 | 239 |
| |
| |||
218 | 246 |
| |
219 | 247 |
| |
220 | 248 |
| |
| 249 | + | |
221 | 250 |
| |
222 | 251 |
| |
223 | 252 |
| |
| |||
230 | 259 |
| |
231 | 260 |
| |
232 | 261 |
| |
| 262 | + | |
233 | 263 |
| |
234 | 264 |
| |
235 | 265 |
| |
236 |
| - | |
| 266 | + | |
237 | 267 |
| |
238 | 268 |
| |
239 | 269 |
| |
|
Lines changed: 10 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
1 | 11 |
| |
2 | 12 |
| |
3 | 13 |
| |
|
Lines changed: 5 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + |
Lines changed: 3 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + |
0 commit comments