File tree
985 files changed
+17659
-4418
lines changed- .github
- workflows
- change-notes
- 1.20
- 1.23
- 1.24
- config/atm/ml-powered-queries-repo
- models
- cpp/ql
- lib
- change-notes
- released
- experimental/semmle/code/cpp/semantic/analysis
- semmle/code/cpp/commons
- src
- Best Practices/Likely Errors
- change-notes
- released
- test
- TestUtilities
- library-tests
- printf
- formatAttribute
- formatLiteral
- templates/CPP-223
- query-tests/Likely Bugs/Format/NonConstantFormat
- csharp/ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- integration-tests
- lib
- change-notes/released
- semmle/code/csharp/dataflow/internal
- src
- change-notes/released
- test/TestUtilities
- docs
- codeql
- codeql-for-visual-studio-code
- ql-language-reference
- ql-libraries/dataflow
- go
- old-change-notes
- ql
- config/legacy-support
- lib
- change-notes/released
- semmle/go
- frameworks
- security
- src
- Diagnostics
- change-notes
- released
- test
- TestUtilities
- query-tests
- Diagnostics
- Security/CWE-312
- protos
- query
- vendor
- github.com/golang/protobuf
- proto
- google.golang.org/protobuf
- internal/impl
- proto
- reflect/protoreflect
- runtime
- protoiface
- protoimpl
- javascript
- old-change-notes
- ql
- examples/queries/dataflow/DecodingAfterSanitization
- experimental/adaptivethreatmodeling
- lib
- src
- lib
- change-notes/released
- semmle/javascript
- dataflow
- frameworks
- security/dataflow
- src
- AngularJS
- DOM
- Declarations
- Expressions
- LanguageFeatures
- NodeJS
- Performance
- RegExp
- Security
- CWE-022
- CWE-073
- CWE-078
- CWE-079
- CWE-089
- CWE-094
- CWE-117
- CWE-1275
- CWE-134
- CWE-178
- CWE-200
- CWE-209
- CWE-312
- CWE-313
- CWE-338
- CWE-346
- CWE-352
- CWE-384
- CWE-400
- CWE-502
- CWE-601
- CWE-611
- CWE-614
- CWE-643
- CWE-730
- CWE-770
- CWE-776
- CWE-807
- CWE-834
- CWE-912
- CWE-915
- CWE-918
- change-notes
- released
- experimental/Security
- CWE-094
- CWE-340
- CWE-918
- test
- experimental/Security
- CWE-094
- CWE-918
- library-tests/frameworks/Templating
- query-tests
- AngularJS
- DuplicateDependency
- InsecureUrlWhitelist
- DOM/HTML
- Declarations
- ClobberingVarInit
- DuplicateVarDecl
- RedeclaredVariable
- Expressions
- DuplicateProperty
- StringInsteadOfRegex
- UnboundEventHandlerReceiver
- LanguageFeatures
- BadTypeof
- NonLinearPattern
- ThisBeforeSuper
- NodeJS/MissingExports
- Performance/ReassignParameterAndUseArguments
- RegExp
- BackrefIntoNegativeLookahead
- DuplicateCharacterInCharacterClass
- Security
- CWE-022
- TaintedPath
- ZipSlip
- CWE-073
- CWE-078
- CWE-079
- DomBasedXss
- pages
- ReflectedXss
- UnsafeHtmlConstruction
- CWE-089
- typed
- untyped
- CWE-094
- CodeInjection
- UnsafeDynamicMethodAccess
- CWE-117
- CWE-1275
- CWE-134
- CWE-178
- CWE-200
- CWE-209
- CWE-312
- CWE-313
- CWE-338
- CWE-346
- CWE-352
- CWE-384
- CWE-400/RemovePropertyInjection
- CWE-502
- CWE-601
- ClientSideUrlRedirect
- ServerSideUrlRedirect
- CWE-611
- CWE-614
- CWE-643
- CWE-730
- CWE-770/ResourceExhaustion
- CWE-776
- CWE-807
- CWE-834
- CWE-912
- CWE-915/PrototypePollutingMergeCall
- CWE-918
- java
- documentation/library-coverage
- kotlin-extractor
- src/main
- java/com/semmle
- extractor/java
- util/trap/pathtransformers
- kotlin
- comments
- utils
- versions
- v_1_4_32
- v_1_5_20
- v_1_7_0
- old-change-notes
- ql
- consistency-queries
- integration-tests
- all-platforms/kotlin
- enabling
- enhanced-nullability
- external-property-overloads
- extractor_crash
- code
- gradle_groovy_app
- app
- src/main/kotlin/testProject
- gradle_kotlinx_serialization
- app
- src/main/kotlin/testProject
- java_modifiers
- libsrc/extlib
- kotlin-interface-inherited-default
- kotlin_compiler_java_source
- kotlin_file_import
- libsrc
- kotlin_java_lowering_wildcards
- kotlin_java_static_fields
- kotlin_kfunction
- app
- src/main/kotlin/testProject
- kotlinc_multi
- logs
- nested_generic_types
- libsrc/extlib
- private_property_accessors
- raw_generic_types
- libsrc/extlib
- trap_compression
- linux-only/kotlin
- custom_plugin
- posix-only/kotlin
- default-parameter-mad-flow
- generic-extension-property
- gradle_kotlinx_serialization
- app/src/main/kotlin/testProject
- java-interface-redeclares-tostring
- needless-java-wildcards
- lib
- change-notes
- released
- semmle/code/java
- dataflow/internal
- deadcode
- frameworks/kotlin
- src
- Compatibility/JDK9
- Likely Bugs
- Arithmetic
- Statements
- Violations of Best Practice/Implementation Hiding
- change-notes
- released
- test
- TestUtilities
- kotlin
- library-tests
- annotation_classes
- annotations/jvmName
- arrays-with-variances
- arrays
- call-int-to-char
- classes
- comments
- controlflow
- basic
- CONSISTENCY
- dominance
- CONSISTENCY
- dataflow
- extensionMethod
- func
- notnullexpr
- summaries
- exprs
- CONSISTENCY
- extensions
- fake_overrides
- all_kotlin
- kotlin_calling_java
- for-array-iterators
- generic-inner-classes
- generic-instance-methods
- generics-location
- generics
- inherited-callee
- inherited-collection-implementation
- internal-constructor-called-from-java
- internal-public-alias
- java-kotlin-collection-type-generic-methods
- java-lang-number-conversions
- CONSISTENCY
- java-map-methods
- CONSISTENCY
- java_and_kotlin_internal
- java_and_kotlin
- jvmoverloads_flow
- jvmoverloads_generics
- jvmstatic-annotation
- lateinit
- maps-iterator-overloads
- methods
- ministdlib
- multiple_files
- parameter-defaults
- reflection
- special-method-getters
- static-method-calls
- stmts
- super-method-calls
- this
- trap
- vararg
- query-tests
- AbstractToConcreteCollection
- ConstantLoopCondition
- MissingInstanceofInEquals
- PartiallyMaskedCatch
- UnderscoreIdentifier
- UselessParameter
- WhitespaceContradictsPrecedence
- library-tests
- dataflow/partial
- frameworks/JaxWs
- structure
- structure
- query-tests
- SpuriousJavadocParam
- lgtm-example-queries
- misc
- bazel
- cmake
- legacy-support
- cpp
- csharp
- javascript
- java
- python
- suite-helpers
- change-notes/released
- python
- .vscode
- ql
- lib
- change-notes/released
- src
- Security/CWE-327
- change-notes
- released
- experimental/Security
- CWE-022bis
- CWE-340
- test
- TestUtilities
- experimental/query-tests/Security/CWE-022
- library-tests
- InlineExpectationsTest/missing-relevant-tag
- essa/ssa-compute
- tools/recorded-call-graph-metrics/ql
- ql/ql
- src
- codeql_ql/ast
- internal
- test
- TestUtilities
- callgraph/packs/other
- ruby/ql
- lib
- change-notes
- released
- codeql/ruby
- ast
- internal
- controlflow
- internal
- dataflow/internal
- frameworks
- core
- http_clients
- security
- src
- change-notes
- released
- queries/security/cwe-094
- test
- TestUtilities
- library-tests
- ast
- operations
- controlflow/graph
- dataflow
- api-graphs
- array-flow
- call-sensitivity
- hash-flow
- local
- frameworks
- active_support
- http_clients
- modules
- query-tests
- experimental/improper-memoization
- security
- cwe-022
- cwe-094
- cwe-300
- cwe-918
- swift
- codegen
- generators
- lib
- schema
- templates
- test
- extractor
- infra
- file
- remapping
- trap
- visitors
- integration-tests
- posix-only/hello-world
- ql
- lib/codeql/swift
- dataflow
- internal
- elements/decl
- frameworks/StandardLibrary
- generated
- decl
- expr
- pattern
- stmt
- type
- src/queries
- Security
- CWE-079
- CWE-089
- CWE-311
- CWE-312
- CWE-321
- CWE-327
- CWE-757
- Summary
- test
- TestUtilities
- library-tests
- dataflow
- dataflow
- flowsources
- taint
- elements/decl/abstractfunctiondecl
- query-tests/Security
- CWE-079
- CWE-089
- CWE-327
- ECB-Encryption
- third_party
- fishhook
- picosha2
- swift-llvm-support
- tools
- test/qltest
- extractor_options
- failing_run
- normal_run
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
985 files changed
+17659
-4418
lines changedLines changed: 8 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
43 | 43 |
| |
44 | 44 |
| |
45 | 45 |
| |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + |
Lines changed: 56 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + |
Lines changed: 2 additions & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
96 | 96 |
| |
97 | 97 |
| |
98 | 98 |
| |
| 99 | + | |
99 | 100 |
| |
100 |
| - | |
101 | 101 |
| |
102 | 102 |
| |
103 | 103 |
| |
| |||
202 | 202 |
| |
203 | 203 |
| |
204 | 204 |
| |
205 |
| - | |
| 205 | + | |
206 | 206 |
| |
207 | 207 |
| |
208 | 208 |
| |
|
Lines changed: 12 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
23 | 23 |
| |
24 | 24 |
| |
25 | 25 |
| |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
26 | 37 |
| |
27 | 38 |
| |
28 | 39 |
| |
29 | 40 |
| |
30 | 41 |
| |
31 |
| - | |
| 42 | + | |
32 | 43 |
| |
33 | 44 |
| |
34 | 45 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
52 | 52 |
| |
53 | 53 |
| |
54 | 54 |
| |
55 |
| - | |
| 55 | + | |
56 | 56 |
| |
57 | 57 |
| |
58 | 58 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
19 | 19 |
| |
20 | 20 |
| |
21 | 21 |
| |
22 |
| - | |
| 22 | + | |
23 | 23 |
| |
24 | 24 |
| |
25 | 25 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
91 | 91 |
| |
92 | 92 |
| |
93 | 93 |
| |
94 |
| - | |
| 94 | + | |
95 | 95 |
| |
96 | 96 |
| |
97 | 97 |
| |
|
Lines changed: 21 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + |
Lines changed: 68 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + |
Lines changed: 7 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + |
0 commit comments