File tree
1,621 files changed
+76982
-28119
lines changed- .github/workflows
- .vscode
- actions
- cpp/ql
- lib
- change-notes/released
- semmle/code/cpp/ir
- dataflow/internal
- implementation
- aliased_ssa
- raw
- unaliased_ssa
- src
- Likely Bugs/Format
- Metrics/Internal
- Telemetry
- change-notes/released
- test
- experimental/query-tests/Best Practices/GuardedFree
- library-tests
- extraction_errors
- ir
- ir
- ssa
- syntax-zoo
- query-tests/Likely Bugs/Format/WrongNumberOfFormatArguments
- csharp
- .config
- .paket
- actions/create-extractor-pack
- extractor
- Semmle.Extraction.CSharp.DependencyFetching
- Semmle.Extraction.CSharp.DependencyStubGenerator
- Semmle.Extraction.CSharp
- CodeAnalysisExtensions
- Comments
- Entities
- Base
- Compilations
- Expressions
- ObjectCreation
- Locations
- Statements
- Types
- Extractor
- Trap
- Semmle.Extraction.Tests
- Semmle.Extraction
- Entities
- Testrunner
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- integration-tests
- all-platforms
- binlog_multiple
- a
- b
- binlog
- a
- b
- conditional_compilation
- cshtml_standalone_disabled
- cshtml_standalone_flowsteps
- cshtml_standalone
- cshtml
- diag_dotnet_incompatible
- diag_missing_project_files
- diag_missing_xamarin_sdk
- diag_recursive_generics
- dotnet_build
- dotnet_no_args_inject
- dotnet_pack
- dotnet_publish
- dotnet_run
- source_generator
- standalone_buildless_option
- standalone_dependencies_net48
- standalone_failed
- standalone_resx
- standalone_winforms
- standalone
- linux
- compiler_args
- standalone_dependencies_non_utf8_filename
- posix
- dotnet_test_mstest
- dotnet_test
- inherit-env-vars
- standalone_dependencies_multi_project
- standalone_dependencies_multi_target
- standalone_dependencies_no_framework
- standalone_dependencies_nuget with_space
- standalone_dependencies_nuget_config_error_timeout/proj
- standalone_dependencies_nuget_config_error/proj
- standalone_dependencies_nuget_config_fallback/proj
- standalone_dependencies_nuget_no_sources/proj
- standalone_dependencies_nuget_versions
- d1
- d2
- standalone_dependencies_nuget
- standalone_dependencies
- warn_as_error
- windows/standalone_dependencies
- lib
- change-notes/released
- ext/generated
- semmle/code/csharp/dataflow/internal
- src
- change-notes/released
- utils/modelgenerator/internal
- test
- library-tests/dataflow
- collections
- external-models
- global
- library
- threat-models
- query-tests/Security Features
- CWE-079
- StoredXSS
- XSSAsp
- CWE-089
- CWE-090
- CWE-112
- CWE-201/ExposureInTransmittedData
- CWE-601/UrlRedirect
- CWE-643
- CWE-807
- resources/stubs
- Amazon.Lambda.APIGatewayEvents/2.7.0
- Amazon.Lambda.Core/2.2.0
- Antlr3.Runtime/3.5.1
- Dapper/2.1.24
- EntityFramework/6.4.4
- Iesi.Collections/4.0.4
- Microsoft.CSharp/4.7.0
- Microsoft.Extensions.DependencyInjection.Abstractions/6.0.0
- Microsoft.Extensions.DependencyInjection/6.0.0
- Microsoft.Extensions.Http/6.0.0
- Microsoft.Extensions.Logging.Abstractions/6.0.0
- Microsoft.Extensions.Logging/6.0.0
- Microsoft.Extensions.Options/6.0.0
- Microsoft.Extensions.Primitives/6.0.0
- Microsoft.NETCore.Platforms
- 1.1.0
- 3.1.0
- Microsoft.NETCore.Targets/1.1.0
- Microsoft.Win32.Primitives/4.3.0
- Microsoft.Win32.Registry/4.7.0
- Microsoft.Win32.SystemEvents/6.0.0
- NETStandard.Library/1.6.1
- NHibernate/5.4.7
- Newtonsoft.Json/13.0.3
- Remotion.Linq.EagerFetching/2.2.0
- Remotion.Linq/2.2.0
- ServiceStack.Client/8.0.0
- ServiceStack.Common/8.0.0
- ServiceStack.Interfaces/8.0.0
- ServiceStack.OrmLite.SqlServer/8.0.0
- ServiceStack.OrmLite/8.0.0
- ServiceStack.Text/8.0.0
- ServiceStack/8.0.0
- Stub.System.Data.SQLite.Core.NetStandard/1.0.118
- System.AppContext/4.3.0
- System.Buffers/4.3.0
- System.CodeDom/4.7.0
- System.Collections.Concurrent/4.3.0
- System.Collections.NonGeneric/4.3.0
- System.Collections/4.3.0
- System.ComponentModel.Annotations/5.0.0
- System.ComponentModel.Primitives/4.3.0
- System.ComponentModel/4.3.0
- System.Configuration.ConfigurationManager
- 6.0.0
- 8.0.0
- System.Console/4.3.0
- System.Data.OleDb/8.0.0
- System.Data.SQLite.Core/1.0.118
- System.Data.SQLite.EF6/1.0.118
- System.Data.SQLite/1.0.118
- System.Data.SqlClient/4.8.5
- System.Diagnostics.Debug/4.3.0
- System.Diagnostics.DiagnosticSource/6.0.0
- System.Diagnostics.EventLog/8.0.0
- System.Diagnostics.PerformanceCounter/8.0.0
- System.Diagnostics.Tools/4.3.0
- System.Diagnostics.Tracing/4.3.0
- System.Drawing.Common/6.0.0
- System.Dynamic.Runtime/4.3.0
- System.Globalization.Calendars/4.3.0
- System.Globalization.Extensions/4.3.0
- System.Globalization/4.3.0
- System.IO.Compression.ZipFile/4.3.0
- System.IO.Compression/4.3.0
- System.IO.FileSystem.Primitives/4.3.0
- System.IO.FileSystem/4.3.0
- System.IO/4.3.0
- System.Linq.Expressions/4.3.0
- System.Linq.Queryable/4.0.1
- System.Linq/4.3.0
- System.Memory/4.5.5
- System.Net.Http/4.3.0
- System.Net.Primitives/4.3.0
- System.Net.Sockets/4.3.0
- System.ObjectModel/4.3.0
- System.Reflection.Emit.ILGeneration/4.3.0
- System.Reflection.Emit.Lightweight/4.7.0
- System.Reflection.Emit/4.7.0
- System.Reflection.Extensions/4.3.0
- System.Reflection.Primitives/4.3.0
- System.Reflection.TypeExtensions/4.7.0
- System.Reflection/4.3.0
- System.Resources.ResourceManager/4.3.0
- System.Runtime.CompilerServices.Unsafe/6.0.0
- System.Runtime.Extensions/4.3.0
- System.Runtime.Handles/4.3.0
- System.Runtime.InteropServices.RuntimeInformation/4.3.0
- System.Runtime.InteropServices/4.3.0
- System.Runtime.Numerics/4.3.0
- System.Runtime.Serialization.Formatters/4.3.0
- System.Runtime.Serialization.Primitives/4.3.0
- System.Runtime/4.3.0
- System.Security.AccessControl
- 4.7.0
- 6.0.0
- System.Security.Cryptography.Algorithms/4.3.0
- System.Security.Cryptography.Cng/4.3.0
- System.Security.Cryptography.Csp/4.3.0
- System.Security.Cryptography.Encoding/4.3.0
- System.Security.Cryptography.OpenSsl/4.3.0
- System.Security.Cryptography.Primitives/4.3.0
- System.Security.Cryptography.ProtectedData
- 6.0.0
- 8.0.0
- System.Security.Cryptography.X509Certificates/4.3.0
- System.Security.Permissions/6.0.0
- System.Security.Principal.Windows/4.7.0
- System.Text.Encoding.Extensions/4.3.0
- System.Text.Encoding/4.3.0
- System.Text.RegularExpressions/4.3.0
- System.Threading.Tasks.Extensions/4.3.0
- System.Threading.Tasks/4.3.0
- System.Threading.Timer/4.3.0
- System.Threading/4.3.0
- System.Windows.Extensions/6.0.0
- System.Xml.ReaderWriter/4.3.0
- System.Xml.XDocument/4.3.0
- System.Xml.XmlDocument/4.3.0
- _frameworks
- Microsoft.AspNetCore.App
- Microsoft.NETCore.App
- runtime.debian.8-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.fedora.23-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.fedora.24-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.native.System.Data.SqlClient.sni/4.7.0
- runtime.native.System.IO.Compression/4.3.0
- runtime.native.System.Net.Http/4.3.0
- runtime.native.System.Security.Cryptography.Apple/4.3.0
- runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.native.System/4.3.0
- runtime.opensuse.13.2-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.opensuse.42.1-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.osx.10.10-x64.runtime.native.System.Security.Cryptography.Apple/4.3.0
- runtime.osx.10.10-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.rhel.7-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.ubuntu.14.04-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.ubuntu.16.04-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.ubuntu.16.10-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.win-arm64.runtime.native.System.Data.SqlClient.sni/4.4.0
- runtime.win-x64.runtime.native.System.Data.SqlClient.sni/4.4.0
- runtime.win-x86.runtime.native.System.Data.SqlClient.sni/4.4.0
- utils/modelgenerator/dataflow
- scripts
- stubs
- docs/codeql
- codeql-overview/codeql-changelog
- reusables
- go
- extractor
- ql
- consistency-queries
- change-notes/released
- lib
- change-notes/released
- ext
- semmle/go/dataflow
- internal
- src
- RedundantCode
- change-notes/released
- test
- experimental
- CWE-203
- CWE-522-DecompressionBombs
- CWE-74
- CWE-79
- CWE-918
- library-tests/semmle/go
- Types
- pkg1
- aliases/InterfaceImpls
- dataflow
- DefaultTaintSanitizer
- ExternalFlowInheritance
- vendor/github.com/nonexistent/test
- ThreatModels
- frameworks
- Beego
- Chi
- Echo
- Encoding
- Gin
- Gorestful
- Revel
- Twirp
- XNetHtml
- query-tests/Security
- CWE-020/IncompleteHostnameRegexp
- CWE-078
- CWE-079
- CWE-089
- CWE-327
- CWE-338/InsecureRandomness
- CWE-347
- CWE-601
- BadRedirectCheck
- OpenUrlRedirect
- CWE-640
- CWE-643
- CWE-918
- javascript/ql
- lib
- change-notes/released
- semmle/javascript
- dataflow
- src
- Security
- CWE-020
- CWE-312
- change-notes/released
- test
- experimental/Security/CWE-918
- library-tests
- Arrays
- RegExp/IsRegex
- TaintTracking
- query-tests/Security
- CWE-020
- IncompleteHostnameRegExp
- MissingRegExpAnchor
- CWE-022/TaintedPath
- CWE-117
- java
- documentation/library-coverage
- kotlin-extractor/src/main/kotlin
- ql
- automodel/src
- change-notes/released
- lib
- change-notes/released
- ext
- experimental
- semmle/code/java
- controlflow
- dataflow
- src
- change-notes/released
- utils/modelgenerator/internal
- test-kotlin1/library-tests
- classes
- dataflow/summaries
- test-kotlin2/library-tests
- classes
- dataflow/summaries
- test
- experimental/query-tests/security
- CWE-020
- CWE-073
- CWE-078
- CWE-094
- CWE-200
- CWE-346
- CWE-347
- CWE-348
- CWE-470
- CWE-598
- CWE-625
- CWE-652
- ext/TestModels
- library-tests
- dataflow
- collections
- taint-format
- taint-jackson
- threat-models
- frameworks
- JaxWs
- android
- content-provider-summaries
- flow-steps
- intent
- notification
- uri
- apache-collections
- apache-commons-lang3
- gson
- guava/generated
- cache
- collect
- jackson
- javax-json
- jdk
- java.io
- java.net
- java.nio.file
- json-java
- netty/generated
- play
- spring
- beans
- cache
- http
- ui
- util
- validation
- webutil
- stream
- logging
- optional
- paths
- regex
- unreachableblocks
- query-tests/security
- CWE-089/semmle/examples
- CWE-090
- CWE-094
- CWE-113/semmle/tests
- CWE-200/semmle/tests/TempDirLocalInformationDisclosure
- CWE-601/semmle/tests
- misc
- bazel
- 3rdparty
- py_deps
- tree_sitter_extractors_deps
- suite-helpers
- change-notes/released
- python
- extractor/tsg-python
- tsp
- ql
- lib
- change-notes/released
- semmle/python
- frameworks
- src
- change-notes/released
- test
- library-tests/frameworks/bottle
- query-tests
- Functions/return_values
- Statements/unreachable
- ql
- ruby
- extractor
- ql
- lib
- change-notes/released
- src
- change-notes/released
- rust
- ast-generator
- codegen
- extractor
- macros
- src
- src
- config
- generated
- translate
- ql
- consistency-queries
- integration-tests
- options
- cfg
- src
- features
- src
- target
- src
- qltest
- dependencies
- failing_cargo_check
- lib
- codeql/rust
- controlflow
- internal
- dataflow/internal
- elements
- internal
- generated
- src/queries
- diagnostics
- summary
- unusedentities
- test
- extractor-tests
- canonical_path
- generated
- Abi/CONSISTENCY
- ArgList/CONSISTENCY
- ArrayType/CONSISTENCY
- AssocTypeArg/CONSISTENCY
- Attr/CONSISTENCY
- AwaitExpr/CONSISTENCY
- BecomeExpr/CONSISTENCY
- BinaryExpr
- BreakExpr/CONSISTENCY
- CallExpr
- CONSISTENCY
- CastExpr
- ClosureBinder/CONSISTENCY
- ClosureExpr/CONSISTENCY
- Comment/CONSISTENCY
- ConstArg/CONSISTENCY
- ConstParam/CONSISTENCY
- Const/CONSISTENCY
- ContinueExpr/CONSISTENCY
- DynTraitType/CONSISTENCY
- Enum/CONSISTENCY
- ExprStmt/CONSISTENCY
- ExternBlock/CONSISTENCY
- ExternCrate/CONSISTENCY
- ExternItemList/CONSISTENCY
- FieldExpr
- FnPtrType/CONSISTENCY
- ForExpr/CONSISTENCY
- ForType/CONSISTENCY
- FormatArgsArg/CONSISTENCY
- FormatArgsExpr/CONSISTENCY
- Function
- CONSISTENCY
- GenericParamList/CONSISTENCY
- IdentPat
- IfExpr/CONSISTENCY
- ImplTraitType/CONSISTENCY
- Impl/CONSISTENCY
- IndexExpr
- InferType/CONSISTENCY
- ItemList/CONSISTENCY
- Label/CONSISTENCY
- LetElse/CONSISTENCY
- LetExpr/CONSISTENCY
- LetStmt/CONSISTENCY
- LifetimeArg/CONSISTENCY
- LifetimeParam/CONSISTENCY
- Lifetime/CONSISTENCY
- LoopExpr/CONSISTENCY
- MacroCall
- CONSISTENCY
- MacroDef/CONSISTENCY
- MacroExpr/CONSISTENCY
- MacroItems/CONSISTENCY
- MacroPat/CONSISTENCY
- MacroRules/CONSISTENCY
- MacroStmts/CONSISTENCY
- MacroType/CONSISTENCY
- MatchArmList/CONSISTENCY
- MatchArm/CONSISTENCY
- MatchExpr/CONSISTENCY
- MatchGuard/CONSISTENCY
- Meta/CONSISTENCY
- MethodCallExpr
- Module
- NameRef
- CONSISTENCY
- Name
- CONSISTENCY
- NeverType/CONSISTENCY
- OffsetOfExpr
- ParamList/CONSISTENCY
- Param/CONSISTENCY
- ParenExpr/CONSISTENCY
- ParenPat/CONSISTENCY
- ParenType/CONSISTENCY
- PathExpr
- CONSISTENCY
- PathPat
- PathSegment
- CONSISTENCY
- PathType/CONSISTENCY
- Path
- PrefixExpr
- PtrType/CONSISTENCY
- RecordExprFieldList/CONSISTENCY
- RecordExprField
- RecordExpr
- RecordFieldList/CONSISTENCY
- RecordField/CONSISTENCY
- RecordPatFieldList/CONSISTENCY
- RecordPatField
- RecordPat
- RefExpr
- RefType/CONSISTENCY
- Rename/CONSISTENCY
- RestPat/CONSISTENCY
- RetType/CONSISTENCY
- ReturnTypeSyntax/CONSISTENCY
- SelfParam/CONSISTENCY
- SliceType/CONSISTENCY
- SourceFile/CONSISTENCY
- Static/CONSISTENCY
- StmtList/CONSISTENCY
- Struct/CONSISTENCY
- TokenTree/CONSISTENCY
- TraitAlias/CONSISTENCY
- Trait
- CONSISTENCY
- TryExpr/CONSISTENCY
- TupleFieldList/CONSISTENCY
- TupleField/CONSISTENCY
- TupleStructPat
- TupleType/CONSISTENCY
- TypeAlias/CONSISTENCY
- TypeArg/CONSISTENCY
- TypeBoundList/CONSISTENCY
- TypeBound/CONSISTENCY
- TypeParam/CONSISTENCY
- Union/CONSISTENCY
- UseTreeList/CONSISTENCY
- UseTree/CONSISTENCY
- Use/CONSISTENCY
- VariantList/CONSISTENCY
- Variant/CONSISTENCY
- Visibility/CONSISTENCY
- WhereClause/CONSISTENCY
- WherePred/CONSISTENCY
- WhileExpr/CONSISTENCY
- utf8
- library-tests
- controlflow-unstable
- controlflow
- CONSISTENCY
- dataflow
- barrier
- CONSISTENCY
- global
- local
- CONSISTENCY
- definitions/CONSISTENCY
- formatstrings/CONSISTENCY
- variables
- CONSISTENCY
- query-tests
- diagnostics
- CONSISTENCY
- unusedentities
- CONSISTENCY
- utils
- schema
- swift
- actions/build-and-test
- ql
- lib
- change-notes/released
- src
- change-notes/released
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
1,621 files changed
+76982
-28119
lines changedLines changed: 0 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
23 | 23 |
| |
24 | 24 |
| |
25 | 25 |
| |
26 |
| - | |
27 | 26 |
| |
28 | 27 |
|
Lines changed: 0 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
8 | 8 |
| |
9 | 9 |
| |
10 | 10 |
| |
11 |
| - |
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
30 | 30 |
| |
31 | 31 |
| |
32 | 32 |
| |
33 |
| - | |
| 33 | + | |
34 | 34 |
| |
35 | 35 |
| |
36 | 36 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
48 | 48 |
| |
49 | 49 |
| |
50 | 50 |
| |
51 |
| - | |
| 51 | + | |
52 | 52 |
| |
53 | 53 |
| |
54 | 54 |
| |
|
Lines changed: 5 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
39 | 39 |
| |
40 | 40 |
| |
41 | 41 |
| |
42 |
| - | |
| 42 | + | |
43 | 43 |
| |
44 | 44 |
| |
45 | 45 |
| |
46 |
| - | |
47 |
| - | |
48 |
| - | |
49 |
| - | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
50 | 50 |
| |
51 | 51 |
| |
52 | 52 |
| |
|
Lines changed: 2 additions & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
37 | 37 |
| |
38 | 38 |
| |
39 | 39 |
| |
40 |
| - | |
| 40 | + | |
41 | 41 |
| |
42 | 42 |
| |
43 | 43 |
| |
| |||
64 | 64 |
| |
65 | 65 |
| |
66 | 66 |
| |
67 |
| - | |
| 67 | + | |
68 | 68 |
| |
69 | 69 |
| |
70 | 70 |
| |
|
Lines changed: 5 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
71 | 71 |
| |
72 | 72 |
| |
73 | 73 |
| |
74 |
| - | |
| 74 | + | |
75 | 75 |
| |
76 | 76 |
| |
77 | 77 |
| |
78 | 78 |
| |
79 | 79 |
| |
80 | 80 |
| |
81 |
| - | |
| 81 | + | |
82 | 82 |
| |
83 | 83 |
| |
84 | 84 |
| |
85 | 85 |
| |
86 | 86 |
| |
87 | 87 |
| |
88 |
| - | |
| 88 | + | |
89 | 89 |
| |
90 | 90 |
| |
91 | 91 |
| |
| |||
97 | 97 |
| |
98 | 98 |
| |
99 | 99 |
| |
100 |
| - | |
| 100 | + | |
101 | 101 |
| |
102 | 102 |
| |
103 | 103 |
| |
| |||
117 | 117 |
| |
118 | 118 |
| |
119 | 119 |
| |
120 |
| - | |
| 120 | + | |
121 | 121 |
| |
122 | 122 |
| |
123 | 123 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
30 | 30 |
| |
31 | 31 |
| |
32 | 32 |
| |
33 |
| - | |
| 33 | + | |
34 | 34 |
| |
35 | 35 |
| |
36 | 36 |
|
Lines changed: 2 additions & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
34 | 34 |
| |
35 | 35 |
| |
36 | 36 |
| |
37 |
| - | |
| 37 | + | |
38 | 38 |
| |
39 | 39 |
| |
40 | 40 |
| |
41 | 41 |
| |
42 |
| - | |
| 42 | + | |
43 | 43 |
| |
44 | 44 |
| |
45 | 45 |
|
Lines changed: 11 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
38 | 38 |
| |
39 | 39 |
| |
40 | 40 |
| |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
41 | 47 |
| |
42 | 48 |
| |
43 | 49 |
| |
44 | 50 |
| |
| 51 | + | |
45 | 52 |
| |
46 | 53 |
| |
47 | 54 |
| |
48 |
| - | |
49 | 55 |
| |
50 | 56 |
| |
51 | 57 |
| |
| |||
93 | 99 |
| |
94 | 100 |
| |
95 | 101 |
| |
96 |
| - | |
| 102 | + | |
97 | 103 |
| |
98 |
| - | |
| 104 | + | |
99 | 105 |
| |
100 | 106 |
| |
101 |
| - | |
| 107 | + | |
102 | 108 |
| |
103 |
| - | |
| 109 | + | |
104 | 110 |
| |
105 | 111 |
| |
106 | 112 |
| |
|
0 commit comments