File tree
1,397 files changed
+119498
-83091
lines changed- .github/workflows
- .vscode
- config
- cpp/ql
- lib
- change-notes
- released
- experimental/semmle/code/cpp/rangeanalysis
- extensions
- semmle/code/cpp
- commons
- controlflow
- exprs
- ir
- dataflow/internal
- implementation
- aliased_ssa
- gvn
- internal
- internal
- raw
- gvn
- internal
- unaliased_ssa
- gvn
- internal
- internal
- models
- implementations
- interfaces
- rangeanalysis/new/internal/semantic
- analysis
- security
- valuenumbering
- upgrades/282c13bfdbcbd57a887972b47a471342a4ad5507
- src
- Critical
- JPL_C/LOC-4/Rule 23
- Likely Bugs
- Likely Typos
- Memory Management
- Metrics/Dependencies
- Security/CWE
- CWE-020
- ir
- CWE-079
- CWE-119
- CWE-295
- CWE-327
- change-notes
- released
- experimental
- Likely Bugs
- Security/CWE
- CWE-078
- CWE-1041
- CWE-193
- CWE-675
- external
- test
- TestUtilities/dataflow
- experimental/query-tests/Security/CWE
- CWE-119
- CWE-193
- constant-size
- pointer-deref
- library-tests
- blocks/cpp
- dataflow
- DefaultTaintTracking
- annotate_path_to_sink
- annotate_sinks_only
- globals
- dataflow-tests
- fields
- smart-pointers-taint
- source-sink-tests
- taint-tests
- identity_string
- ir
- modulus-analysis
- points_to
- range-analysis
- sign-analysis
- types
- locations/constants
- loops
- syntax-zoo
- query-tests
- Critical/MemoryFreed
- Security/CWE
- CWE-078
- SAMATE/ExecTainted
- semmle/ExecTainted
- CWE-119/SAMATE
- csharp
- documentation/library-coverage
- extractor/Semmle.Extraction.CSharp
- Entities
- Expressions/ObjectCreation
- Extractor
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- consistency-queries
- integration-tests
- all-platforms/cshtml
- Views/Home
- posix-only/warn_as_error
- lib
- Linq
- change-notes
- released
- ext
- generated
- semmle/code
- cil
- csharp
- commons
- dataflow
- internal
- dispatch
- exprs
- frameworks
- security
- cryptography
- dataflow
- flowsinks
- src
- Bad Practices/Comments
- Dead Code
- Language Abuse
- Likely Bugs
- Collections
- Dynamic
- Statements
- Security Features/CWE-352
- change-notes/released
- experimental
- Security Features
- CWE-759
- backdoor
- dataflow/flowsources
- ir
- implementation
- internal
- raw
- gvn
- internal
- common
- desugar
- internal
- unaliased_ssa
- gvn
- internal
- internal
- rangeanalysis
- utils
- modelconverter
- modelgenerator/internal
- test
- experimental
- Security Features/backdoor
- ir/offbyone/CONSISTENCY
- library-tests
- assemblies
- cil
- attributes/CONSISTENCY
- consistency/CONSISTENCY
- dataflow
- CONSISTENCY
- enums/CONSISTENCY
- functionPointers/CONSISTENCY
- init-only-prop/CONSISTENCY
- pdbs/CONSISTENCY
- regressions/CONSISTENCY
- typeAnnotations/CONSISTENCY
- commons/Disposal/CONSISTENCY
- controlflow
- graph/CONSISTENCY
- guards/CONSISTENCY
- splits/CONSISTENCY
- csharp11/cil/CONSISTENCY
- dataflow
- defuse/CONSISTENCY
- external-models
- global/CONSISTENCY
- library
- ssa/CONSISTENCY
- frameworks
- EntityFramework
- sql
- parameters
- query-tests
- API Abuse/NoDisposeCallOnLocalIDisposable/CONSISTENCY
- Nullness/CONSISTENCY
- Security Features
- CWE-022/ZipSlip/CONSISTENCY
- CWE-117
- resources/stubs
- utils/modelgenerator/dataflow
- tools
- docs/codeql
- codeql-for-visual-studio-code
- codeql-language-guides
- images/codeql-for-visual-studio-code
- ql-language-reference
- query-help
- reusables
- writing-codeql-queries
- go
- codeql-tools
- extractor
- cli/go-autobuilder
- diagnostics
- ql
- integration-tests/all-platforms/go/diagnostics
- package-not-found-with-go-mod
- package-not-found-without-go-mod
- lib
- change-notes/released
- semmle/go
- dataflow
- internal
- frameworks
- stdlib
- security
- src
- RedundantCode
- Security
- CWE-352
- CWE-601
- change-notes/released
- experimental
- CWE-134
- CWE-203
- frameworks
- test
- TestUtilities
- experimental
- CWE-134
- CWE-203
- frameworks
- CleverGo
- Fiber
- library-tests/semmle/go
- dataflow
- ExternalFlowVarArgs
- Nodes
- VarArgs
- frameworks/SQL/Gorm
- javascript
- downgrades/8accf0f930bcb8b42d69fd7ef7b4372604f551ed
- ql
- examples/queries/dataflow/DecodingAfterSanitization
- experimental/adaptivethreatmodeling
- lib/experimental/adaptivethreatmodeling
- modelbuilding/extraction
- lib
- change-notes
- released
- semmle/javascript
- frameworks
- AngularJS
- linters
- meta
- security/dataflow
- upgrades/4d00210ca570d55c4833af11d3372b774dbc63f2
- src
- Performance
- Security
- CWE-078/examples
- CWE-094
- examples
- CWE-807
- CWE-915
- examples
- change-notes
- released
- experimental/Security/CWE-094
- test
- experimental/Security/CWE-094
- library-tests/NPM
- src
- node_modules/parent-module
- sub-module
- query-tests/Security
- CWE-078
- CommandInjection
- IndirectCommandInjection
- CWE-094
- CodeInjection
- ExpressionInjection
- .github/workflows
- action1
- action2
- tutorials
- Introducing the JavaScript libraries
- Validating RAML-based APIs
- java
- documentation/library-coverage
- kotlin-extractor
- src/main
- java/com/semmle/extractor/java
- kotlin
- ql
- integration-tests/all-platforms
- java/diagnostics/java-version-too-old
- kotlin/diagnostics/kotlin-version-too-new
- lib
- change-notes
- released
- ext
- generated
- semmle/code/java
- dataflow
- internal
- frameworks
- apache
- google
- javaee
- javase
- rundeck
- security
- src
- Security/CWE/CWE-730
- Telemetry
- change-notes/released
- experimental/Security/CWE/CWE-611
- utils
- flowtestcasegenerator
- modelconverter
- modelgenerator/internal
- stub-generator
- test
- TestUtilities
- experimental/query-tests/security/CWE-611
- ext/TestModels
- kotlin/library-tests/dataflow
- notnullexpr
- whenexpr
- library-tests
- dataflow
- callback-dispatch
- collections
- external-models
- synth-global
- taint-gson
- taintsources
- frameworks
- android
- content-provider-summaries
- intent
- notification
- apache-collections
- apache-http
- gson
- guava/generated/collect
- jdk/java.io
- netty/generated
- play
- mad
- stream
- neutrals/neutralsinks
- optional
- query-tests/security
- CWE-022/semmle/tests
- mad
- CWE-089/semmle/examples
- CWE-094
- CWE-611
- CWE-918
- mad
- stubs
- apache-http-5/org/apache/hc/client5/http/protocol
- groovy-all-3.0.7/groovy
- lang
- text
- gson-2.8.6/com/google/gson
- internal
- reflect
- stream
- jwtk-jjwt-0.11.2/io/jsonwebtoken
- playframework-2.6.x/play
- api/mvc
- libs/ws
- mvc
- springframework-5.3.8/org/springframework/jdbc
- core
- namedparam
- support
- utils/modelgenerator/dataflow
- misc
- codegen
- generators
- lib
- loaders
- templates
- test
- scripts
- suite-helpers
- change-notes/released
- python
- downgrades/0565f7466437d52e1dc64a3b930926ab2f60cd64
- ql
- lib
- change-notes/released
- semmle/python
- dataflow/new
- internal
- frameworks
- regexp
- internal
- security
- dataflow
- regexp
- upgrades/0355ecf0ac589e66467a378e0e9d60f41ee4a757
- src
- Expressions/Regex
- Security
- CWE-020
- CWE-116
- CWE-730
- change-notes/released
- experimental/Security/CWE-176
- meta/analysis-quality
- test
- experimental
- dataflow
- basic
- coverage
- tainttracking
- basic
- defaultAdditionalTaintStep
- typetracking
- variable-capture
- meta/debug
- query-tests/Security/CWE-176
- library-tests
- ApiGraphs/py3
- regexparser
- regex
- query-tests/Security/CWE-730-PolynomialReDoS
- ql
- buramu
- extractor
- src
- ql
- src
- codeql_ql
- ast
- internal
- style
- codeql
- queries/bugs
- test
- callgraph
- queries/style
- ImplicitThis
- OmittableExists
- tools
- ruby
- actions/create-extractor-pack
- downgrades/f9f0f4023e433184fda76f595247bf448b782135
- extractor/src
- ql
- lib
- change-notes
- released
- codeql
- ruby
- ast/internal
- controlflow
- dataflow/internal
- experimental
- frameworks
- core
- regexp/internal
- typetracking
- ide-contextual-queries
- upgrades/ff289788b1552e32078788baa27152cc95b68f77
- src
- change-notes
- released
- experimental/cwe-176
- examples
- queries
- meta
- internal
- security/cwe-1333
- test
- library-tests
- ast
- CONSISTENCY
- calls/CONSISTENCY
- dataflow
- api-graphs
- local
- modules
- query-tests
- experimental/cwe-176
- security/cwe-089
- swift
- actions
- build-and-test
- run-ql-tests
- downgrades/44e36e15e90bc1535964d9b86b3cd06a8b0d26e3
- extractor
- infra
- translators
- trap
- integration-tests
- linux-only/autobuilder/unsupported-os
- osx-only/autobuilder
- failure
- hello-failure.xcodeproj
- project.xcworkspace
- no-build-system
- no-swift-with-spm
- hello-objective.xcodeproj
- project.xcworkspace
- hello-objective
- no-swift
- hello-objective.xcodeproj
- project.xcworkspace
- hello-objective
- no-xcode-with-spm
- only-tests-with-spm
- hello-tests.xcodeproj
- project.xcworkspace
- only-tests
- hello-tests.xcodeproj
- project.xcworkspace
- logging
- tests/assertion-diagnostics
- ql
- consistency-queries
- change-notes
- examples
- snippets
- lib
- change-notes
- codeql/swift
- controlflow/internal
- dataflow
- internal
- elements
- decl
- expr
- pattern
- type
- frameworks
- StandardLibrary
- UIKit
- Xml
- generated
- decl
- expr
- pattern
- stmt
- type
- printast
- security
- upgrades/ba4171b90d0665b40e9e203bac9e3d4a0b2d03ec
- src
- change-notes
- queries/Security
- CWE-312
- CWE-321
- test
- extractor-tests
- declarations/CONSISTENCY
- errors/CONSISTENCY
- expressions/CONSISTENCY
- generated
- decl
- CapturedDecl
- EnumDecl/CONSISTENCY
- expr
- IdentityExpr
- ImplicitConversionExpr
- MethodLookupExpr/CONSISTENCY
- OpenExistentialExpr
- patterns/CONSISTENCY
- statements/CONSISTENCY
- library-tests
- ast
- CONSISTENCY
- controlflow/graph
- CONSISTENCY
- dataflow
- dataflow
- CONSISTENCY
- flowsources
- taint
- core
- libraries
- CONSISTENCY
- elements
- decl
- enumdecl
- CONSISTENCY
- function/CONSISTENCY
- expr/methodlookup/CONSISTENCY
- query-tests/Security
- CWE-022
- CWE-089
- CONSISTENCY
- CWE-1204/CONSISTENCY
- CWE-135
- CWE-259/CONSISTENCY
- CWE-311
- CONSISTENCY
- CWE-312
- CONSISTENCY
- CWE-321
- CONSISTENCY
- CWE-327/CONSISTENCY
- CWE-328/CONSISTENCY
- CWE-611
- CONSISTENCY
- CWE-757
- CONSISTENCY
- CWE-760/CONSISTENCY
- CWE-916/CONSISTENCY
- CWE-946
- third_party
- tools
- autobuilder-diagnostics
- xcode-autobuilder
- tests
- hello-targets-with-tests-suffix
- Foo.xcodeproj
- project.xcworkspace
- hello-tests
- hello-tests.xcodeproj
- project.xcworkspace
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
1,397 files changed
+119498
-83091
lines changedLines changed: 2 additions & 3 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
11 | 11 |
| |
12 | 12 |
| |
13 | 13 |
| |
14 |
| - | |
15 | 14 |
| |
16 | 15 |
| |
17 | 16 |
| |
| |||
27 | 26 |
| |
28 | 27 |
| |
29 | 28 |
| |
30 |
| - | |
| 29 | + | |
31 | 30 |
| |
32 | 31 |
| |
33 | 32 |
| |
34 |
| - | |
| 33 | + | |
35 | 34 |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
32 | 32 |
| |
33 | 33 |
| |
34 | 34 |
| |
35 |
| - | |
| 35 | + | |
36 | 36 |
| |
37 | 37 |
| |
38 | 38 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
61 | 61 |
| |
62 | 62 |
| |
63 | 63 |
| |
64 |
| - | |
| 64 | + | |
65 | 65 |
| |
66 | 66 |
| |
67 | 67 |
| |
|
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
16 | 16 |
| |
17 | 17 |
| |
18 | 18 |
| |
| 19 | + | |
19 | 20 |
| |
20 | 21 |
| |
21 | 22 |
| |
| |||
30 | 31 |
| |
31 | 32 |
| |
32 | 33 |
| |
| 34 | + | |
33 | 35 |
| |
34 | 36 |
| |
35 | 37 |
| |
|
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
17 | 17 |
| |
18 | 18 |
| |
19 | 19 |
| |
| 20 | + | |
| 21 | + | |
20 | 22 |
|
Lines changed: 17 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
22 | 22 |
| |
23 | 23 |
| |
24 | 24 |
| |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
25 | 41 |
| |
26 | 42 |
| |
27 |
| - | |
| 43 | + |
Lines changed: 3 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
40 | 40 |
| |
41 | 41 |
| |
42 | 42 |
| |
| 43 | + | |
| 44 | + | |
| 45 | + |
Lines changed: 33 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + |
Lines changed: 0 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
47 | 47 |
| |
48 | 48 |
| |
49 | 49 |
| |
50 |
| - | |
51 | 50 |
| |
52 | 51 |
| |
53 | 52 |
| |
|
Lines changed: 86 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
| 9 | + | |
| 10 | + | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
| 22 | + | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
| 38 | + | |
| 39 | + | |
| 40 | + | |
| 41 | + | |
| 42 | + | |
| 43 | + | |
| 44 | + | |
| 45 | + | |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
| 53 | + | |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
| 65 | + | |
| 66 | + | |
| 67 | + | |
| 68 | + | |
| 69 | + | |
| 70 | + | |
| 71 | + | |
| 72 | + | |
| 73 | + | |
| 74 | + | |
| 75 | + | |
| 76 | + | |
| 77 | + | |
| 78 | + | |
| 79 | + | |
| 80 | + | |
| 81 | + | |
| 82 | + | |
| 83 | + | |
| 84 | + | |
| 85 | + | |
| 86 | + |
0 commit comments