File tree
751 files changed
+32064
-5030
lines changed- .github/workflows
- actions
- extractor/tools
- ql
- integration-tests
- filters-default
- filters
- src
- .github
- actions/action-name
- workflows
- excluded
- included
- lib
- change-notes/released
- codeql/actions/config
- ext/config
- src
- Security
- CWE-1395
- CWE-275
- CWE-312
- CWE-829
- change-notes/released
- test/query-tests/Security/CWE-275
- .github/workflows
- config
- cpp/ql
- lib
- change-notes/released
- semmle/code/cpp
- dataflow
- ir/dataflow/internal
- src
- change-notes/released
- test/library-tests
- calling-convention
- specifiers2
- csharp
- documentation/library-coverage
- downgrades/66044cfa5bbf2ecfabd06ead25e91db2bdd79764
- extractor/Semmle.Extraction.CSharp
- CodeAnalysisExtensions
- Entities/Expressions
- Kinds
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- integration-tests
- all-platforms
- blazor_net_8
- diag_missing_project_files
- posix
- standalone_dependencies_no_framework
- standalone_dependencies_nuget with_space
- standalone_dependencies_nuget_no_sources
- standalone_dependencies_nuget
- lib
- change-notes/released
- ext/generated
- semmle/code/csharp
- controlflow/internal
- dataflow/internal
- exprs
- frameworks
- microsoft/aspnetcore
- security
- upgrades/a2bda57dbc6eea94c50128522aae536e8edd5a3c
- src
- change-notes/released
- codeql-suites
- utils/modelgenerator/internal
- test
- library-tests
- controlflow/graph
- csharp11
- csharp6
- csharp7.3
- csharp7
- csharp8
- csharp9
- dataflow
- implicittostring
- library
- local
- frameworks/microsoft/aspnetcore/blazor
- stringinterpolation
- query-tests
- API Abuse/NoDisposeCallOnLocalIDisposable
- Bad Practices/Control-Flow/ConstantCondition
- Dead Code/DeadStoreOfLocal
- Security Features/CWE-117
- docs
- codeql
- codeql-language-guides
- codeql-overview
- codeql-changelog
- query-help
- reusables
- writing-codeql-queries
- go
- documentation/library-coverage
- extractor
- toolchain
- ql
- consistency-queries
- change-notes/released
- lib
- change-notes/released
- ext
- semmle/go/frameworks
- src
- change-notes/released
- test
- experimental
- CWE-285/vendor
- CWE-321-V2/vendor
- CWE-522-DecompressionBombs/vendor
- library-tests/semmle/go
- concepts/LoggerCall/vendor
- github.com/golang/glog
- k8s.io/klog
- dataflow/flowsources/local/database
- vendor
- github.com
- gogf/gf/database/gdb
- nonexistent/sources
- uptrace/bun
- frameworks
- Beego/vendor
- ElazarlGoproxy/vendor
- Email/vendor
- github.com/sendgrid/sendgrid-go/helpers/mail
- Gin/vendor
- GoMicro/vendor
- Iris/vendor
- K8sIoApiCoreV1/vendor
- k8s.io
- apimachinery/pkg/runtime
- api/core/v1
- K8sIoApimachineryPkgRuntime/vendor
- k8s.io/apimachinery/pkg/runtime/schema
- K8sIoClientGo/vendor
- NoSQL/vendor
- Revel/vendor
- SQL
- gogf/vendor
- vendor/github.com/go-pg/pg/orm
- Spew/vendor
- SystemCommandExecutors/vendor
- github.com/codeskyblue/go-sh
- golang.org/x/crypto/ssh
- WebSocket/vendor
- Zap/vendor
- query-tests
- Security
- CWE-020/IncompleteHostnameRegexp/vendor
- CWE-079/vendor
- CWE-089/vendor
- go.mongodb.org/mongo-driver/bson/primitive
- CWE-312/vendor
- github.com/golang/glog
- k8s.io/klog
- CWE-347/vendor
- CWE-640/vendor
- github.com/sendgrid/sendgrid-go/helpers/mail
- CWE-643/vendor
- github.com/antchfx
- htmlquery
- jsonquery
- CWE-798/vendor
- CWE-918/vendor
- filters/ClassifyFiles/vendor/github.com/onsi
- ginkgo
- gomega
- javascript
- extractor
- src/com/semmle/js
- extractor
- parser
- tests/json
- input
- output/trap
- ql
- lib
- change-notes/released
- ext
- semmle/javascript
- dataflow
- frameworks
- internal/flow_summaries
- security/dataflow
- src
- Expressions
- Security
- CWE-327
- trest
- change-notes/released
- test
- ApiGraphs/spread
- library-tests
- DOM
- SensitiveActions
- TaintTracking
- frameworks/WebSocket
- query-tests/Security
- CWE-022/TaintedPath
- CWE-079
- DomBasedXss
- ReflectedXss
- app/api
- CWE-522-DecompressionBombs
- CWE-918
- Request
- app/api/proxy
- java/ql
- integration-tests/java
- buildless-inherit-trust-store
- buildless-snapshot-repository
- gradle-sample-without-wrapper-or-gradle-buildless
- query-suite
- lib
- change-notes/released
- semmle/code/java
- deadcode
- frameworks/javaee
- security
- src
- Performance
- Telemetry
- change-notes/released
- codeql-suites
- utils/modelgenerator/internal
- test
- library-tests/dataflow/capture
- query-tests
- StringReplaceAllWithNonRegex
- security/CWE-089/semmle/examples
- stubs/jakarta-persistence-api-3.2.0/jakarta/persistence
- misc
- codegen/templates
- scripts
- suite-helpers
- change-notes/released
- powershell/ql
- src/experimental
- test/query-tests/security
- ConvertToSecureStringAsPlainText
- HardcodedComputerName
- UseOfReservedCmdletChar
- UsernameOrPasswordParameter
- python/ql
- lib
- change-notes/released
- src
- Functions
- Variables
- LoopVariableCapture
- examples
- change-notes/released
- codeql-suites
- test/query-tests
- Functions/return_values
- Variables/capture
- ruby/ql
- consistency-queries
- lib
- change-notes/released
- codeql/ruby
- ast
- internal
- controlflow/internal
- dataflow/internal
- src
- change-notes/released
- codeql-suites
- queries/variables
- examples
- test
- library-tests
- ast
- params
- dataflow
- global
- local
- params
- query-tests/variables
- DeadStoreOfLocal
- UninitializedLocal
- rust
- downgrades
- initial
- extractor/src
- ql
- consistency-queries
- integration-tests
- hello-project
- hello-workspace
- lib
- change-notes/released
- codeql
- files
- rust
- dataflow
- internal
- elements/internal
- generated
- frameworks
- stdlib
- internal
- security
- regex
- upgrades/initial
- utils/test
- src
- change-notes/released
- queries
- diagnostics
- security
- CWE-020
- CWE-022
- CWE-089
- CWE-311
- CWE-312
- CWE-328
- CWE-770
- CWE-825
- summary
- utils/modelgenerator/internal
- test
- extractor-tests
- canonical_path_disabled
- CONSISTENCY
- canonical_path
- CONSISTENCY
- generated/MacroItems
- CONSISTENCY
- library-tests
- controlflow
- dataflow
- global
- local
- CONSISTENCY
- modeled
- pointers
- strings
- path-resolution
- CONSISTENCY
- my2
- my/my4/my5
- type-inference
- loop
- variables
- query-tests
- diagnostics
- security
- CWE-020
- CWE-022
- CWE-089
- CONSISTENCY
- CWE-311
- CWE-312
- CWE-770
- CWE-825
- utils-tests/modelgenerator
- swift/ql
- lib
- change-notes/released
- codeql/swift
- dataflow
- internal
- elements/expr
- internal
- generated
- src
- change-notes/released
- test/library-tests/dataflow/dataflow
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
751 files changed
+32064
-5030
lines changedLines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
| 1 | + |
Lines changed: 152 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
| 69 | + | |
| 70 | + | |
| 71 | + | |
| 72 | + | |
| 73 | + | |
| 74 | + | |
| 75 | + | |
| 76 | + | |
| 77 | + | |
| 78 | + | |
| 79 | + | |
| 80 | + | |
| 81 | + | |
| 82 | + | |
| 83 | + | |
| 84 | + | |
| 85 | + | |
| 86 | + | |
| 87 | + | |
| 88 | + | |
| 89 | + | |
| 90 | + | |
| 91 | + | |
| 92 | + | |
| 93 | + | |
| 94 | + | |
| 95 | + | |
| 96 | + | |
| 97 | + | |
| 98 | + | |
| 99 | + | |
| 100 | + | |
| 101 | + | |
| 102 | + | |
| 103 | + | |
| 104 | + | |
| 105 | + | |
| 106 | + | |
| 107 | + | |
| 108 | + | |
| 109 | + | |
| 110 | + | |
| 111 | + | |
| 112 | + | |
| 113 | + | |
| 114 | + | |
| 115 | + | |
| 116 | + | |
| 117 | + | |
| 118 | + | |
| 119 | + | |
| 120 | + | |
| 121 | + | |
| 122 | + | |
| 123 | + | |
| 124 | + | |
| 125 | + | |
| 126 | + | |
| 127 | + | |
| 128 | + | |
| 129 | + | |
| 130 | + | |
| 131 | + | |
| 132 | + | |
| 133 | + | |
| 134 | + | |
| 135 | + | |
| 136 | + | |
| 137 | + | |
| 138 | + | |
| 139 | + | |
| 140 | + | |
| 141 | + | |
| 142 | + | |
| 143 | + | |
| 144 | + | |
| 145 | + | |
| 146 | + | |
| 147 | + | |
| 148 | + | |
| 149 | + | |
| 150 | + | |
| 151 | + | |
| 152 | + |
Lines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
21 | 21 |
| |
22 | 22 |
| |
23 | 23 |
| |
| 24 | + | |
24 | 25 |
| |
25 | 26 |
| |
26 | 27 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
78 | 78 |
| |
79 | 79 |
| |
80 | 80 |
| |
81 |
| - | |
| 81 | + | |
82 | 82 |
| |
83 | 83 |
| |
84 | 84 |
| |
|
Lines changed: 3 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
14 | 14 |
| |
15 | 15 |
| |
16 | 16 |
| |
| 17 | + | |
| 18 | + | |
| 19 | + | |
17 | 20 |
| |
18 | 21 |
| |
19 | 22 |
| |
|
Lines changed: 26 additions & 19 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
2 |
| - | |
3 |
| - | |
4 |
| - | |
5 |
| - | |
6 |
| - | |
7 |
| - | |
8 |
| - | |
9 |
| - | |
10 |
| - | |
11 |
| - | |
12 |
| - | |
13 |
| - | |
14 |
| - | |
15 |
| - | |
16 |
| - | |
17 |
| - | |
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
18 | 14 |
| |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
19 | 26 |
| |
20 | 27 |
| |
21 | 28 |
| |
22 | 29 |
| |
23 | 30 |
| |
24 |
| - | |
| 31 | + | |
25 | 32 |
| |
26 | 33 |
| |
27 | 34 |
| |
| |||
40 | 47 |
| |
41 | 48 |
| |
42 | 49 |
| |
43 |
| - | |
| 50 | + | |
44 | 51 |
| |
45 | 52 |
| |
46 | 53 |
|
Lines changed: 2 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 | 1 |
| |
2 | 2 |
| |
3 |
| - | |
| 3 | + | |
| 4 | + |
Lines changed: 17 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
17 | 17 |
| |
18 | 18 |
| |
19 | 19 |
| |
20 |
| - | |
21 |
| - | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
22 | 34 |
| |
23 |
| - | |
| 35 | + | |
24 | 36 |
| |
25 | 37 |
| |
26 | 38 |
| |
27 | 39 |
| |
28 | 40 |
| |
29 |
| - | |
| 41 | + | |
30 | 42 |
| |
31 | 43 |
| |
32 | 44 |
| |
| |||
42 | 54 |
| |
43 | 55 |
| |
44 | 56 |
| |
45 |
| - | |
| 57 | + |
Lines changed: 5 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + |
Lines changed: 6 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + |
0 commit comments