File tree
468 files changed
+12664
-3972
lines changed- .github/workflows
- config
- cpp
- ql
- examples
- lib
- semmle/code/cpp
- dataflow/internal
- exprs
- ir/dataflow/internal
- security
- src
- codeql-suites
- test
- experimental/query-tests/Security/CWE
- CWE-190/AllocMultiplicationOverflow
- CWE-359/semmle/tests
- library-tests/dataflow/fields
- query-tests
- Likely Bugs
- Conversion/CastArrayPointerArithmetic
- Memory Management/ImproperNullTermination
- Security/CWE
- CWE-134/semmle/argv
- CWE-190/semmle
- ArithmeticUncontrolled
- tainted
- upgrades
- csharp
- change-notes
- extractor/Semmle.Extraction.CIL/Entities
- ql
- examples
- lib
- semmle/code
- cil
- csharp
- dataflow
- internal
- dispatch
- frameworks
- system
- diagnostics
- security
- dataflow
- serialization
- dotnet
- src
- Language Abuse
- Likely Bugs
- Linq
- Security Features
- Stubs
- test
- experimental
- Security Features/backdoor
- ir/ir
- library-tests
- assignables
- cil/dataflow
- comments
- commons/Assertions
- controlflow
- graph
- guards
- csharp6
- csharp7.3
- csharp7
- csharp8
- csharp9
- dataflow
- async
- call-sensitivity
- callablereturnsarg
- collections
- external-models
- fields
- global
- library
- local
- signanalysis
- ssa
- tuples
- types
- definitions
- delegates
- dispatch
- dynamic
- expressions
- extension-method-call
- fields
- frameworks
- EntityFramework
- JsonNET
- generics
- linq
- members
- methods
- nestedtypes
- overrides
- parameters
- properties
- security/dataflow/flowsources
- statements
- tostringwithtypes
- tuples
- types
- unification
- query-tests
- API Abuse
- FormatInvalid
- NonOverridingMethod
- UncheckedReturnValue
- Dead Code/Tests
- Documentation
- Likely Bugs/UnsafeYearConstruction
- Nullness
- Security Features
- CWE-020
- CWE-022
- TaintedPath
- ZipSlip
- CWE-078
- CWE-079/StoredXSS
- CWE-089
- CWE-090
- CWE-094
- CWE-099
- CWE-112
- CWE-117
- CWE-134
- CWE-201/ExposureInTransmittedData
- CWE-209
- CWE-312
- CWE-327
- DontInstallRootCert
- InsecureSQLConnection
- CWE-338
- CWE-359
- CWE-502/UnsafeDeserializationUntrustedInput
- CWE-601/UrlRedirect
- CWE-611
- CWE-643
- CWE-730
- ReDoSGlobalTimeout
- ReDoS
- RegexInjection
- CWE-798
- CWE-807
- CWE-838
- Stubs
- All
- Minimal
- Useless Code/PointlessForwardingMethod
- upgrades
- docs/codeql
- _templates
- codeql-cli
- support/reusables
- javascript/ql
- examples
- lib/semmle/javascript
- dataflow
- frameworks
- security
- dataflow
- performance
- src
- test
- library-tests/frameworks/Vue
- query-tests
- Performance/ReDoS
- Security/CWE-079/XssThroughDom
- java
- change-notes
- ql
- examples
- lib
- config
- semmle/code/java
- dataflow
- internal
- frameworks
- android
- javaee/ejb
- src
- DeadCode
- Likely Bugs/Statements
- Telemetry
- utils
- test
- experimental/query-tests/security
- CWE-074
- CWE-078
- CWE-094
- CWE-1004
- CWE-208
- NotConstantTimeCheckOnSignature
- TimingAttackAgainstSignagure
- CWE-295/InsecureTrustManager
- CWE-299
- CWE-327
- CWE-346
- CWE-348
- CWE-352
- CWE-470
- CWE-502
- CWE-522
- CWE-598
- CWE-600
- CWE-601
- CWE-652
- CWE-730
- CWE-755
- CWE-759
- CWE-927
- library-tests
- dataflow/call-sensitivity
- frameworks/JaxWs
- record-classes
- query-tests
- Telemetry
- ExternalLibraryUsage
- SupportedExternalSinks
- SupportedExternalSources
- SupportedExternalTaint
- UnsupportedExternalAPIs
- security
- CWE-022/semmle/tests
- CWE-078
- CWE-089/semmle/examples
- CWE-090
- CWE-094
- CWE-113/semmle/tests
- CWE-129/semmle/tests
- CWE-134/semmle/tests
- CWE-190/semmle/tests
- CWE-297
- CWE-311/CWE-319
- CWE-327/semmle/tests
- CWE-601/semmle/tests
- CWE-611
- CWE-681/semmle/tests
- CWE-798/semmle/tests
- CWE-807/semmle/tests
- upgrades/b4e689c90426b017ad550e30a439cab2763ff424
- misc/scripts
- python
- .vscode
- ql
- examples
- lib
- semmle/python
- dataflow/new/internal
- frameworks
- internal
- security/performance
- src
- Security/CWE-327
- meta/alerts
- test
- experimental
- dataflow
- TestUtil
- coverage
- fieldflow
- method-calls
- tainttracking
- defaultAdditionalTaintStep-py3
- defaultAdditionalTaintStep
- meta
- query-tests/Security
- CWE-090
- CWE-730
- library-tests
- frameworks
- aiohttp
- django-v2-v3
- flask
- modeling-example
- stdlib
- tornado
- regexparser
- regex
- query-tests/Security
- CWE-020-ExternalAPIs
- CWE-078-CommandInjection-py2
- CWE-078-CommandInjection
- CWE-079-ReflectedXss
- CWE-089-SqlInjection
- CWE-094-CodeInjection
- CWE-209-StackTraceExposure
- CWE-312-CleartextLogging
- CWE-312-CleartextStorage-py3
- CWE-312-CleartextStorage
- CWE-327-WeakSensitiveDataHashing
- CWE-502-UnsafeDeserialization
- CWE-601-UrlRedirect
- CWE-730-PolynomialReDoS
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
468 files changed
+12664
-3972
lines changedLines changed: 3 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
48 | 48 |
| |
49 | 49 |
| |
50 | 50 |
| |
| 51 | + | |
| 52 | + | |
| 53 | + |
Lines changed: 6 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
11 | 11 |
| |
12 | 12 |
| |
13 | 13 |
| |
| 14 | + | |
| 15 | + | |
14 | 16 |
| |
15 | 17 |
| |
16 | 18 |
| |
| |||
38 | 40 |
| |
39 | 41 |
| |
40 | 42 |
| |
41 |
| - | |
42 |
| - | |
| 43 | + | |
| 44 | + | |
43 | 45 |
| |
44 | 46 |
| |
45 | 47 |
| |
| |||
48 | 50 |
| |
49 | 51 |
| |
50 | 52 |
| |
51 |
| - | |
52 |
| - | |
53 |
| - | |
| 53 | + | |
| 54 | + | |
54 | 55 |
| |
55 | 56 |
| |
56 | 57 |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
462 | 462 |
| |
463 | 463 |
| |
464 | 464 |
| |
465 |
| - | |
| 465 | + |
Lines changed: 4 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + |
Lines changed: 4 additions & 3 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
2 |
| - | |
3 |
| - | |
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + |
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
3 | 3 |
| |
4 | 4 |
| |
5 | 5 |
| |
| 6 | + | |
| 7 | + |
Lines changed: 102 additions & 15 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
3258 | 3258 |
| |
3259 | 3259 |
| |
3260 | 3260 |
| |
3261 |
| - | |
3262 |
| - | |
3263 |
| - | |
3264 |
| - | |
3265 |
| - | |
3266 |
| - | |
3267 |
| - | |
3268 |
| - | |
3269 | 3261 |
| |
3270 |
| - | |
| 3262 | + | |
3271 | 3263 |
| |
3272 | 3264 |
| |
3273 | 3265 |
| |
3274 | 3266 |
| |
3275 | 3267 |
| |
3276 | 3268 |
| |
3277 |
| - | |
3278 |
| - | |
| 3269 | + | |
| 3270 | + | |
3279 | 3271 |
| |
3280 | 3272 |
| |
3281 | 3273 |
| |
| |||
3287 | 3279 |
| |
3288 | 3280 |
| |
3289 | 3281 |
| |
| 3282 | + | |
| 3283 | + | |
| 3284 | + | |
| 3285 | + | |
| 3286 | + | |
| 3287 | + | |
| 3288 | + | |
| 3289 | + | |
3290 | 3290 |
| |
3291 | 3291 |
| |
3292 | 3292 |
| |
| |||
3313 | 3313 |
| |
3314 | 3314 |
| |
3315 | 3315 |
| |
3316 |
| - | |
| 3316 | + | |
| 3317 | + | |
| 3318 | + | |
| 3319 | + | |
| 3320 | + | |
| 3321 | + | |
3317 | 3322 |
| |
3318 |
| - | |
3319 |
| - | |
| 3323 | + | |
| 3324 | + | |
3320 | 3325 |
| |
3321 | 3326 |
| |
3322 | 3327 |
| |
| |||
3325 | 3330 |
| |
3326 | 3331 |
| |
3327 | 3332 |
| |
3328 |
| - | |
| 3333 | + | |
3329 | 3334 |
| |
3330 | 3335 |
| |
3331 | 3336 |
| |
3332 | 3337 |
| |
3333 | 3338 |
| |
| 3339 | + | |
| 3340 | + | |
3334 | 3341 |
| |
3335 | 3342 |
| |
3336 | 3343 |
| |
| |||
3622 | 3629 |
| |
3623 | 3630 |
| |
3624 | 3631 |
| |
| 3632 | + | |
| 3633 | + | |
| 3634 | + | |
| 3635 | + | |
| 3636 | + | |
| 3637 | + | |
| 3638 | + | |
| 3639 | + | |
| 3640 | + | |
| 3641 | + | |
| 3642 | + | |
| 3643 | + | |
| 3644 | + | |
| 3645 | + | |
| 3646 | + | |
| 3647 | + | |
| 3648 | + | |
| 3649 | + | |
| 3650 | + | |
| 3651 | + | |
| 3652 | + | |
| 3653 | + | |
| 3654 | + | |
| 3655 | + | |
| 3656 | + | |
| 3657 | + | |
| 3658 | + | |
| 3659 | + | |
| 3660 | + | |
| 3661 | + | |
| 3662 | + | |
| 3663 | + | |
| 3664 | + | |
| 3665 | + | |
| 3666 | + | |
| 3667 | + | |
| 3668 | + | |
| 3669 | + | |
| 3670 | + | |
| 3671 | + | |
| 3672 | + | |
| 3673 | + | |
| 3674 | + | |
| 3675 | + | |
| 3676 | + | |
| 3677 | + | |
| 3678 | + | |
| 3679 | + | |
| 3680 | + | |
| 3681 | + | |
| 3682 | + | |
| 3683 | + | |
| 3684 | + | |
| 3685 | + | |
| 3686 | + | |
| 3687 | + | |
| 3688 | + | |
| 3689 | + | |
| 3690 | + | |
| 3691 | + | |
| 3692 | + | |
| 3693 | + | |
| 3694 | + | |
| 3695 | + | |
| 3696 | + | |
| 3697 | + | |
| 3698 | + | |
| 3699 | + | |
| 3700 | + | |
| 3701 | + | |
| 3702 | + | |
| 3703 | + | |
| 3704 | + | |
| 3705 | + | |
| 3706 | + | |
| 3707 | + | |
| 3708 | + | |
| 3709 | + | |
| 3710 | + | |
| 3711 | + | |
3625 | 3712 |
| |
3626 | 3713 |
| |
3627 | 3714 |
| |
|
Lines changed: 102 additions & 15 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
3258 | 3258 |
| |
3259 | 3259 |
| |
3260 | 3260 |
| |
3261 |
| - | |
3262 |
| - | |
3263 |
| - | |
3264 |
| - | |
3265 |
| - | |
3266 |
| - | |
3267 |
| - | |
3268 |
| - | |
3269 | 3261 |
| |
3270 |
| - | |
| 3262 | + | |
3271 | 3263 |
| |
3272 | 3264 |
| |
3273 | 3265 |
| |
3274 | 3266 |
| |
3275 | 3267 |
| |
3276 | 3268 |
| |
3277 |
| - | |
3278 |
| - | |
| 3269 | + | |
| 3270 | + | |
3279 | 3271 |
| |
3280 | 3272 |
| |
3281 | 3273 |
| |
| |||
3287 | 3279 |
| |
3288 | 3280 |
| |
3289 | 3281 |
| |
| 3282 | + | |
| 3283 | + | |
| 3284 | + | |
| 3285 | + | |
| 3286 | + | |
| 3287 | + | |
| 3288 | + | |
| 3289 | + | |
3290 | 3290 |
| |
3291 | 3291 |
| |
3292 | 3292 |
| |
| |||
3313 | 3313 |
| |
3314 | 3314 |
| |
3315 | 3315 |
| |
3316 |
| - | |
| 3316 | + | |
| 3317 | + | |
| 3318 | + | |
| 3319 | + | |
| 3320 | + | |
| 3321 | + | |
3317 | 3322 |
| |
3318 |
| - | |
3319 |
| - | |
| 3323 | + | |
| 3324 | + | |
3320 | 3325 |
| |
3321 | 3326 |
| |
3322 | 3327 |
| |
| |||
3325 | 3330 |
| |
3326 | 3331 |
| |
3327 | 3332 |
| |
3328 |
| - | |
| 3333 | + | |
3329 | 3334 |
| |
3330 | 3335 |
| |
3331 | 3336 |
| |
3332 | 3337 |
| |
3333 | 3338 |
| |
| 3339 | + | |
| 3340 | + | |
3334 | 3341 |
| |
3335 | 3342 |
| |
3336 | 3343 |
| |
| |||
3622 | 3629 |
| |
3623 | 3630 |
| |
3624 | 3631 |
| |
| 3632 | + | |
| 3633 | + | |
| 3634 | + | |
| 3635 | + | |
| 3636 | + | |
| 3637 | + | |
| 3638 | + | |
| 3639 | + | |
| 3640 | + | |
| 3641 | + | |
| 3642 | + | |
| 3643 | + | |
| 3644 | + | |
| 3645 | + | |
| 3646 | + | |
| 3647 | + | |
| 3648 | + | |
| 3649 | + | |
| 3650 | + | |
| 3651 | + | |
| 3652 | + | |
| 3653 | + | |
| 3654 | + | |
| 3655 | + | |
| 3656 | + | |
| 3657 | + | |
| 3658 | + | |
| 3659 | + | |
| 3660 | + | |
| 3661 | + | |
| 3662 | + | |
| 3663 | + | |
| 3664 | + | |
| 3665 | + | |
| 3666 | + | |
| 3667 | + | |
| 3668 | + | |
| 3669 | + | |
| 3670 | + | |
| 3671 | + | |
| 3672 | + | |
| 3673 | + | |
| 3674 | + | |
| 3675 | + | |
| 3676 | + | |
| 3677 | + | |
| 3678 | + | |
| 3679 | + | |
| 3680 | + | |
| 3681 | + | |
| 3682 | + | |
| 3683 | + | |
| 3684 | + | |
| 3685 | + | |
| 3686 | + | |
| 3687 | + | |
| 3688 | + | |
| 3689 | + | |
| 3690 | + | |
| 3691 | + | |
| 3692 | + | |
| 3693 | + | |
| 3694 | + | |
| 3695 | + | |
| 3696 | + | |
| 3697 | + | |
| 3698 | + | |
| 3699 | + | |
| 3700 | + | |
| 3701 | + | |
| 3702 | + | |
| 3703 | + | |
| 3704 | + | |
| 3705 | + | |
| 3706 | + | |
| 3707 | + | |
| 3708 | + | |
| 3709 | + | |
| 3710 | + | |
| 3711 | + | |
3625 | 3712 |
| |
3626 | 3713 |
| |
3627 | 3714 |
| |
|
0 commit comments