File tree
857 files changed
+38429
-7851
lines changed- config
- cpp
- change-notes
- ql
- src
- Diagnostics
- Likely Bugs
- Format
- Memory Management
- Microsoft
- Security/CWE
- CWE-190
- CWE-311
- CWE-367
- CWE-457
- experimental/Security/CWE
- CWE-561
- CWE-703
- CWE-758
- semmle/code/cpp
- commons
- dataflow/internal
- ir/dataflow/internal
- models/interfaces
- rangeanalysis
- security
- test
- experimental/query-tests/Security/CWE
- CWE-561/semmle/tests
- CWE-703/semmle/tests
- CWE-758/semmle/tests
- library-tests
- clang_ms
- conditions
- dataflow
- dataflow-tests
- taint-tests
- rangeanalysis/SimpleRangeAnalysis
- specifiers2
- templates/instantiations_functions
- unnamed
- query-tests
- Likely Bugs
- Format/WrongTypeFormatArguments
- Linux_mixed_byte_wprintf
- Linux_two_byte_wprintf
- Linux_unsigned_chars
- Microsoft
- Memory Management/ImproperNullTermination
- Security/CWE
- CWE-190/semmle
- ArithmeticUncontrolled
- ArithmeticWithExtremeValues
- uncontrolled
- CWE-311/semmle/tests
- CWE-367/semmle
- csharp
- extractor/Semmle.Extraction.CSharp.Standalone
- ql
- src
- Bad Practices
- Dead Code
- Input Validation
- Linq
- Security Features
- CWE-020
- CWE-022
- CWE-078
- CWE-079
- CWE-089
- CWE-090
- CWE-094
- CWE-099
- CWE-112
- CWE-117
- CWE-312
- CWE-321
- CWE-359
- CWE-502
- CWE-601
- CWE-611
- CWE-643
- CWE-730
- CWE-798
- CWE-807
- CWE-838
- Useless code
- semmle/code
- cil/internal
- csharp
- controlflow/internal/pressa
- dataflow
- internal
- basessa
- security
- cryptography
- dataflow
- flowsinks
- xml
- dotnet
- test
- library-tests/dataflow/external-models
- query-tests
- Security Features
- CWE-079/StoredXSS
- CWE-611
- CWE-730/ReDoS
- Useless Code/DefaultToString
- docs
- codeql
- codeql-cli
- ql-language-reference
- query-help
- reusables
- support/reusables
- writing-codeql-queries
- javascript
- change-notes
- extractor/lib/typescript
- ql
- src
- DOM
- Security/CWE-798
- semmle/javascript
- dataflow
- internal
- frameworks
- security
- dataflow
- test
- ApiGraphs/spread
- library-tests
- Arrays
- TaintTracking
- frameworks/Vuex
- query-tests
- DOM/TargetBlank
- Security
- CWE-022/TaintedPath
- CWE-079
- DomBasedXss
- ReflectedXss
- CWE-094/CodeInjection
- CWE-117
- CWE-798
- java
- change-notes
- documentation/library-coverage
- ql
- src
- Language Abuse
- Likely Bugs
- Comparison
- Concurrency
- Likely Typos
- Performance
- Security/CWE
- CWE-079
- CWE-094
- CWE-502
- CWE-749
- CWE-917
- CWE-918
- Violations of Best Practice/Implementation Hiding
- experimental/Security/CWE
- CWE-016
- CWE-094
- CWE-1004
- CWE-295
- CWE-470
- CWE-555
- CWE-601
- CWE-749
- CWE-917
- semmle/code
- java
- dataflow
- internal
- dispatch
- frameworks
- android
- apache
- google
- jackson
- javaee/ejb
- spring
- security
- xml
- utils
- test
- experimental
- query-tests/security
- CWE-094
- CWE-352
- CWE-470
- CWE-522
- CWE-601
- CWE-749
- CWE-917
- stubs/groovy-all-3.0.7/groovy
- lang
- util
- library-tests
- UnsafeDeserialization
- dataflow
- collections
- taint-jackson
- taintsources
- taint
- frameworks
- JaxWs
- android/taint-database
- apache-commons-lang3
- jackson
- javax-json
- json-java
- play
- spring
- cache
- http
- ui
- webmultipart
- query-tests/security
- CWE-079/semmle/tests
- CWE-089/semmle/examples
- CWE-094
- CWE-311/CWE-319
- CWE-502
- CWE-749
- CWE-917
- stubs
- android
- android
- app
- content
- os
- util
- webkit
- com/android/internal
- apache-commons-lang3-3.7/org/apache/commons/lang3/mutable
- groovy-all-3.0.7
- groovy
- lang
- util
- org/codehaus/groovy
- ast
- control
- io
- tools/javac
- jackson-core-2.12/com/fasterxml/jackson/core
- type
- jackson-databind-2.10/com/fasterxml/jackson
- core
- databind
- jackson-databind-2.12
- com/fasterxml/jackson
- annotation
- core
- databind
- cfg
- jsontype
- json
- jakarta-json-2.0.1/jakarta/json
- stream
- javax-json-api-1.1.4/javax/json
- stream
- javax-servlet-2.5/javax/servlet
- http
- json-java-20210307/org/json
- jsr311-api-1.1.1/javax/ws/rs/core
- mvel2-2.4.7/org/mvel2/jsr223
- ognl-3.2.14/ognl
- enhance
- spring-data-commons-2.5.1/org/springframework/data
- domain
- repository
- util
- springframework-5.3.8/org/springframework
- cache
- core
- io
- support
- dao
- http
- jdbc
- core
- namedparam
- object
- support
- rowset
- stereotype
- ui
- util
- web
- bind/annotation
- multipart
- reactive/function/client
- struts2-core-2.5.22/com/opensymphony/xwork2/ognl
- misc/suite-helpers
- python
- .vscode
- change-notes
- ql
- src
- Security
- CVE-2018-1281
- CWE-078
- CWE-079
- CWE-089
- CWE-094
- CWE-209
- CWE-215
- CWE-295
- CWE-502
- CWE-601
- experimental
- Security
- CWE-287
- examples
- CWE-730
- semmle/python
- frameworks
- semmle/python
- dataflow/new
- internal
- frameworks
- internal
- security/dataflow
- test
- experimental
- dataflow/typetracking
- library-tests/frameworks/sqlalchemy
- query-tests/Security/CWE-287
- library-tests/frameworks/modeling-example
- query-tests/Security
- CWE-730-PolynomialReDoS
- CWE-730-ReDoS
- CWE-730
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
857 files changed
+38429
-7851
lines changedLines changed: 6 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
17 | 17 |
| |
18 | 18 |
| |
19 | 19 |
| |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + |
Lines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
6 | 6 |
| |
7 | 7 |
| |
8 | 8 |
| |
| 9 | + | |
9 | 10 |
| |
10 | 11 |
| |
11 | 12 |
| |
|
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + |
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + |
Lines changed: 3 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + |
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + |
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + |
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + |
Lines changed: 1 addition & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
7 | 7 |
| |
8 | 8 |
| |
9 | 9 |
| |
10 |
| - | |
11 |
| - | |
12 |
| - | |
13 |
| - | |
14 | 10 |
| |
15 | 11 |
| |
16 | 12 |
| |
| |||
19 | 15 |
| |
20 | 16 |
| |
21 | 17 |
| |
22 |
| - | |
| 18 | + |
Lines changed: 29 additions & 16 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
19 | 19 |
| |
20 | 20 |
| |
21 | 21 |
| |
22 |
| - | |
23 | 22 |
| |
24 | 23 |
| |
25 | 24 |
| |
26 |
| - | |
27 |
| - | |
28 |
| - | |
29 |
| - | |
30 |
| - | |
31 |
| - | |
32 |
| - | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
33 | 37 |
| |
34 | 38 |
| |
35 | 39 |
| |
36 | 40 |
| |
37 |
| - | |
38 |
| - | |
| 41 | + | |
39 | 42 |
| |
40 | 43 |
| |
41 |
| - | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
42 | 47 |
| |
43 |
| - | |
44 | 48 |
| |
45 | 49 |
| |
46 | 50 |
| |
| |||
72 | 76 |
| |
73 | 77 |
| |
74 | 78 |
| |
75 |
| - | |
| 79 | + | |
| 80 | + | |
76 | 81 |
| |
77 | 82 |
| |
78 | 83 |
| |
| |||
91 | 96 |
| |
92 | 97 |
| |
93 | 98 |
| |
94 |
| - | |
| 99 | + | |
| 100 | + | |
| 101 | + | |
| 102 | + | |
| 103 | + | |
95 | 104 |
| |
96 | 105 |
| |
97 | 106 |
| |
| |||
146 | 155 |
| |
147 | 156 |
| |
148 | 157 |
| |
149 |
| - | |
| 158 | + | |
| 159 | + | |
150 | 160 |
| |
151 |
| - | |
| 161 | + | |
| 162 | + | |
| 163 | + | |
| 164 | + | |
152 | 165 |
| |
153 | 166 |
| |
154 | 167 |
| |
|
0 commit comments