File tree
3,344 files changed
+119638
-28306
lines changed- .github
- codeql
- workflows
- .vscode
- actions/ql
- lib
- change-notes/released
- codeql
- actions
- Violations Of Best Practices
- ast/internal
- config
- controlflow
- internal
- dataflow
- internal
- ideContextual
- security
- files
- ext
- config
- generated
- composite-actions
- reusable-workflows
- manual
- ide-contextual-queries
- src
- Debug
- Models
- Security
- CWE-074
- CWE-077
- CWE-078
- CWE-088
- CWE-094
- CWE-1395
- CWE-200
- CWE-275
- CWE-284
- CWE-285
- CWE-312
- CWE-349
- CWE-367
- CWE-571
- CWE-829
- CWE-918
- Violations Of Best Practice/CodeQL
- change-notes/released
- codeql-suites
- test
- library-tests
- .github/workflows
- query-tests
- Models
- .github/workflows
- action1
- Placeholder
- .github/workflows
- Security
- CWE-074
- .github/workflows
- CWE-077
- .github
- actions
- download-artifact-2
- download-artifact
- workflows
- CWE-078
- .github
- actions/run-airbyte-ci
- workflows
- CWE-088
- .github/workflows
- CWE-094
- .github
- actions
- action1
- action2
- action3
- action4
- action5
- action6
- action7
- external
- TestOrg/TestRepo/.github/actions/clone-repo
- ultralytics/actions
- workflows
- external/TestOrg/TestRepo/.github/workflows
- CWE-1395
- .github/workflows
- CWE-200
- .github/workflows
- CWE-275
- .github/workflows
- CWE-284
- .github/workflows
- CWE-285
- .github/workflows
- CWE-312
- .github/workflows
- CWE-349
- .github/workflows
- CWE-367
- .github/workflows
- CWE-571
- .github/workflows
- CWE-829
- .github
- actions
- dangerous-git-checkout
- download-artifact-2
- download-artifact
- workflows
- external/TestOrg/TestRepo/.github/workflows
- CWE-918
- .github/workflows
- SyntaxError
- .github/workflows
- Violations Of Best Practice/CodeQL
- .github/workflows
- config
- cpp
- downgrades
- 4813509d85b45ae17421c036905199f7324cf228
- c3881af7e5b247d126aea68a1901b4497adf3d83
- d6a03a00b9824f27241b58b8e18208f31c03904a
- ql
- lib
- change-notes/released
- ext
- semmle/code/cpp
- commons
- controlflow
- dataflow
- exprs
- internal
- ir
- dataflow/internal
- implementation
- aliased_ssa
- gvn
- raw
- gvn
- internal
- unaliased_ssa
- gvn
- models
- implementations
- rangeanalysis/new/internal/semantic/analysis
- upgrades
- c3881af7e5b247d126aea68a1901b4497adf3d83
- d6a03a00b9824f27241b58b8e18208f31c03904a
- f0156f5f88ab5967c79162012c20f30600ca5ebf
- utils/test
- dataflow
- internal
- src
- Best Practices
- Unused Entities
- Likely Bugs
- Arithmetic
- Format
- Memory Management
- Security/CWE/CWE-120
- change-notes/released
- jsf/4.13 Functions
- test
- examples/expressions
- experimental
- library-tests/rangeanalysis/rangeanalysis
- query-tests/Security/CWE/CWE-193/constant-size
- library-tests
- arguments
- blocks
- capture
- cpp
- c
- deduplication
- builtins/type_traits
- clang_builtin_macros
- complex_numbers
- constants/addresses
- constexpr_if
- controlflow
- guards-ir
- guards
- conversions
- cpp11_g
- dataflow
- asExpr
- dataflow-tests
- external-models
- fields
- models-as-data
- parameters-without-defs
- smart-pointers-taint
- source-sink-tests
- taint-tests
- declaration
- fold
- functionpointerish
- ir
- ir
- modulus-analysis
- points_to
- range-analysis
- sign-analysis
- types
- proxy_class
- rvalueCast
- specifiers2
- structs/compatible_c
- syntax-zoo
- type_sizes
- types/datasizeof
- udl
- unspecified_type/types
- vector_types
- query-tests
- Best Practices/Unused Entities/UnusedStaticFunctions
- Critical
- MissingCheckScanf
- SizeCheck
- Likely Bugs
- Format
- WrongNumberOfFormatArguments
- WrongTypeFormatArguments
- Buildless
- Microsoft_no_wchar
- Memory Management/ReturnStackAllocatedMemory
- Security/CWE
- CWE-022/semmle/tests
- CWE-120/semmle/tests
- CWE-193
- csharp
- .config
- .vscode
- autobuilder
- Semmle.Autobuild.CSharp.Tests
- Semmle.Autobuild.CSharp
- Semmle.Autobuild.Cpp.Tests
- documentation/library-coverage
- extractor
- Semmle.Extraction.CSharp.DependencyFetching
- Semmle.Extraction.CSharp.Standalone
- Semmle.Extraction.CSharp.StubGenerator
- Semmle.Extraction.CSharp
- Entities/Expressions/Patterns
- Extractor
- Semmle.Extraction.Tests
- Semmle.Util.Tests
- Semmle.Util/Logging
- Testrunner
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- integration-tests
- all-platforms/cshtml_standalone_flowsteps
- posix/standalone_dependencies_executing_runtime
- lib
- change-notes/released
- ext
- semmle/code/csharp
- commons
- dataflow/internal
- dispatch
- frameworks
- system/collections
- telemetry
- utils/test
- internal
- src
- Telemetry
- change-notes/released
- meta/frameworks
- utils/modeleditor
- test
- TestUtilities/inline-tests
- experimental/Security Features/CWE-759
- library-tests
- arguments
- dataflow
- async
- barrier-guards
- collections
- constructors
- external-models
- fields
- flowsources/stored
- database/dapper
- file
- global
- library
- operators
- patterns
- threat-models
- tuples
- typeflow-dispatch
- types
- dispatch
- frameworks
- EntityFramework
- format
- methods
- parameters
- statements
- strings
- query-tests
- Security Features
- CWE-020
- CWE-022
- TaintedPath
- ZipSlip
- CWE-078
- CWE-079
- StoredXSS
- XSSAsp
- XSS
- CWE-089
- CWE-090
- CWE-091/XMLInjection
- CWE-094
- CWE-099
- CWE-112
- CWE-114/AssemblyPathInjection
- CWE-117
- CWE-134
- CWE-201/ExposureInTransmittedData
- CWE-209
- CWE-321/HardcodedSymmetricEncryptionKey
- CWE-338
- CWE-502
- UnsafeDeserializationUntrustedInputNewtonsoftJson
- UnsafeDeserializationUntrustedInput
- CWE-601/UrlRedirect
- CWE-611
- CWE-643
- CWE-730
- ReDoSGlobalTimeout
- ReDoS
- RegexInjection
- CWE-807
- CWE-838
- Telemetry/DatabaseQuality
- Useless Code/UnusedLabel
- utils
- inline-tests
- queries
- modelgenerator
- dataflow
- typebasedflow
- scripts
- docs/codeql/codeql-overview/codeql-changelog
- go
- actions/test
- documentation/library-coverage
- extractor
- ql
- consistency-queries
- change-notes/released
- lib
- change-notes/released
- ext
- utils/test
- internal
- src
- change-notes/released
- test
- experimental
- CWE-090
- CWE-203
- CWE-287
- CWE-369
- CWE-522-DecompressionBombs
- CWE-74
- CWE-79
- CWE-918
- frameworks
- CleverGo
- Fiber
- library-tests/semmle/go
- Function
- Types
- aliases
- DataflowFields
- InterfaceImpls
- concepts
- HTTP
- LoggerCall
- dataflow
- ArrayConversion
- ChannelField
- ExternalFlowInheritance
- ExternalFlowVarArgs
- ExternalTaintFlow
- ExternalValueFlow
- GenericFunctionsAndTypes
- GlobalVariableSideEffects
- GuardingFunctions
- HiddenNodes
- ListOfConstantsSanitizerGuards
- MapReadsAndStores
- PromotedFields
- PromotedMethods
- SliceExpressions
- Switch
- TypeAssertions
- VarArgsWithFunctionModels
- VarArgs
- flowsources/local
- commandargs
- environment
- file
- stdin
- frameworks
- Afero
- AwsLambda
- BeegoOrm
- Beego
- Chi
- CouchbaseV1
- Echo
- ElazarlGoproxy
- EvanphxJsonPatch
- Fasthttp
- Fiber
- Gin
- GoKit
- GoMicro
- Iris
- K8sIoApiCoreV1
- K8sIoApimachineryPkgRuntime
- K8sIoClientGo
- Macaron
- NoSQL
- Protobuf
- Revel
- SQL
- Gorm
- Sqlx
- bun
- gogf
- gorqlite
- Spew
- StdlibTaintFlow
- Twirp
- XNetHtml
- Yaml
- Zap
- gqlgen
- query-tests
- InconsistentCode/UnhandledCloseWritableHandle
- Security
- CWE-020/IncompleteHostnameRegexp
- CWE-022
- CWE-078
- CWE-079
- CWE-089
- CWE-117
- CWE-190
- CWE-312
- CWE-327
- CWE-338/InsecureRandomness
- CWE-347
- CWE-601
- BadRedirectCheck
- OpenUrlRedirect
- CWE-640
- CWE-643
- CWE-681
- CWE-770
- CWE-918
- javascript/ql
- lib
- change-notes/released
- semmle/javascript/internal
- utils/test
- internal
- src
- change-notes/released
- test
- library-tests
- EndpointNaming
- Generators
- Routing
- Security/heuristics
- frameworks
- Nest
- Vuex
- data
- threat-models/sources
- query-tests/Security
- CWE-022/TaintedPath
- CWE-073
- CWE-078
- CWE-079
- DomBasedXss
- ExceptionXss
- ReflectedXss
- StoredXss
- UnsafeHtmlConstruction
- UnsafeJQueryPlugin
- XssThroughDom
- CWE-089/untyped
- CWE-502
- CWE-611
- CWE-770/ResourceExhaustion
- CWE-915/PrototypePollutingAssignment
- CWE-918
- java
- kotlin-extractor
- ql
- consistency-queries
- integration-tests/kotlin/all-platforms/default-parameter-mad-flow
- lib
- change-notes/released
- semmle/code/java
- controlflow
- dataflow
- internal
- rangeanalysis
- frameworks
- spring
- metrics
- security
- utils/test
- internal
- src
- Likely Bugs
- Comparison
- Concurrency
- Termination
- Security/CWE/CWE-833
- Violations of Best Practice/Declarations
- change-notes/released
- experimental/Security/CWE/CWE-094
- utils/flowtestcasegenerator
- test-kotlin1/library-tests
- controlflow
- basic
- dominance
- paths
- dataflow/summaries
- test-kotlin2/library-tests
- controlflow
- basic
- dominance
- paths
- dataflow/summaries
- test
- experimental/query-tests/security
- CWE-020
- CWE-022
- CWE-073
- CWE-078
- CWE-089/src/main
- CWE-094
- CWE-1004
- CWE-200
- CWE-208
- NotConstantTimeCheckOnSignature
- TimingAttackAgainstSignagure
- CWE-299
- CWE-327
- CWE-346
- CWE-347
- CWE-348
- CWE-352
- CWE-400
- CWE-470
- CWE-502
- CWE-522-DecompressionBombs
- CWE-598
- CWE-600
- CWE-601
- CWE-625
- CWE-652
- CWE-755
- CWE-759
- ext/TestModels
- library-tests
- controlflow
- basic
- dominance
- paths
- dataflow
- callback-dispatch
- callctx
- capture
- collections
- deduplicate-path-graph
- entrypoint-types
- field-value
- flowfeature
- fluent-methods
- implicit-read
- range-analysis-inline
- state
- stream-collect
- stream-read
- subpaths
- synth-global
- taint-format
- taint-gson
- taint-jackson
- taintsources
- typeflow-dispatch
- frameworks
- JaxWs
- android
- asynctask
- content-provider-summaries
- content-provider
- external-storage
- flow-steps
- intent
- notification
- slice
- sources
- taint-database
- uri
- widget
- apache-ant
- apache-collections
- apache-commons-compress
- apache-commons-lang3
- apache-http
- gson
- guava
- generated
- cache
- collect
- handwritten
- hudson
- jackson
- javax-json
- jdk
- java.io
- java.net
- java.nio.file
- jms
- json-java
- lastaflute
- netty
- generated
- manual
- okhttp
- play
- rabbitmq
- ratpack
- retrofit
- spring
- beans
- cache
- context
- controller
- data
- http
- ui
- util
- validation
- webmultipart
- webutil
- stapler
- stream
- thymeleaf
- java7/MultiCatch
- logging
- neutrals/neutralsinks
- optional
- pathsanitizer
- paths
- pattern-instanceof
- pattern-switch/cfg
- regex
- scanner
- successors
- CloseReaderTest
- LoopVarReadTest
- SaveFileTest
- SchackTest
- TestBreak
- TestContinue
- TestDeclarations
- TestFinallyBreakContinue
- TestFinally
- TestLoopBranch
- TestThrow2
- TestThrow
- TestTryCatch
- TestTryWithResources
- xml
- query-tests/security
- CWE-022/semmle/tests
- CWE-023/semmle/tests
- CWE-074
- CWE-078
- CWE-079/semmle/tests
- CWE-089/semmle/examples
- CWE-090
- CWE-094
- CWE-113/semmle/tests
- CWE-117
- CWE-1204
- CWE-129/semmle/tests
- CWE-134/semmle/tests
- CWE-190/semmle/tests
- CWE-200/semmle/tests
- SensitiveNotification
- SensitiveTextView
- TempDirLocalInformationDisclosure
- CWE-266
- CWE-273
- CWE-287
- InsecureKeys
- Test1
- Test2
- InsecureLocalAuth
- CWE-295
- AndroidMissingCertificatePinning
- Test1
- Test2
- Test3
- Test4
- Test5
- ImproperWebVeiwCertificateValidation
- InsecureTrustManager
- CWE-297
- CWE-311/CWE-319
- CWE-312/android/CleartextStorage
- CWE-326
- CWE-327/semmle/tests
- CWE-330
- CWE-347
- CWE-352
- CWE-441
- CWE-470
- CWE-489
- debuggable-attribute
- webview-debugging
- CWE-501
- CWE-502
- CWE-522
- CWE-524
- CWE-532
- CWE-552
- CWE-601/semmle/tests
- CWE-611
- CWE-643
- CWE-681/semmle/tests
- CWE-730
- CWE-749
- CWE-780
- CWE-798/semmle/tests
- CWE-807/semmle/tests
- CWE-917
- CWE-918
- CWE-925
- CWE-926
- incomplete_provider_permissions
- CWE-927
- CWE-940
- utils/modelgenerator
- dataflow
- typebasedflow
- misc
- bazel
- 3rdparty
- tree_sitter_extractors_deps
- buildifier
- codegen
- generators
- lib
- loaders
- test
- ripunzip
- scripts
- models-as-data
- suite-helpers
- change-notes/released
- python
- extractor
- ql
- lib
- change-notes/released
- semmle/python
- dataflow/new/internal
- frameworks
- internal
- security/dataflow
- utils/test
- dataflow
- internal
- src
- Security/CWE-074
- examples
- change-notes/released
- experimental/Security/CWE-074
- test
- experimental
- import-resolution
- library-tests/CallGraph
- meta
- debug
- query-tests/Security
- CWE-022-UnsafeUnpacking
- CWE-074-RemoteCommandExecution
- CWE-074-TemplateInjection
- CWE-409
- library-tests
- ApiGraphs
- py2
- py3
- InlineExpectationsTest/missing-relevant-tag
- dataflow
- basic
- calls
- coverage
- exceptions
- fieldflow
- global-flow
- match
- model-summaries
- module-initialization
- path-graph
- regression
- sensitive-data
- summaries
- tainttracking/generator-flow
- typetracking-summaries
- typetracking
- variable-capture
- essa/ssa-compute
- frameworks
- Genshi
- Mako
- TRender
- airspeed
- bottle
- chameleon
- chevron
- django-orm
- django-v2-v3
- fastapi
- flask
- internal-ql-helpers
- jinja2
- regexparser
- regex
- query-tests
- Functions/ModificationOfParameterWithDefault
- Numerics
- Security
- CWE-022-PathInjection
- CWE-074-TemplateInjection
- CWE-078-CommandInjection
- CWE-078-UnsafeShellCommandConstruction
- CWE-094-CodeInjection
- CWE-209-StackTraceExposure
- CWE-943-NoSqlInjection
- ql/ql
- src/utils/test
- test/dataflow/getAStringValue
- ruby/ql
- lib
- change-notes/released
- codeql/ruby/internal
- utils/test
- internal
- src
- change-notes/released
- queries/security/cwe-094
- test
- TestUtilities
- library-tests
- concepts
- dataflow
- api-graphs
- array-flow
- barrier-guards
- call-sensitivity
- erb
- flow-summaries
- global
- hash-flow
- local
- params
- pathname-flow
- ssa-flow
- string-flow
- summaries
- frameworks
- action_controller
- action_mailer
- active_support
- arel
- json
- sinatra
- query-tests
- experimental/improper-memoization
- security
- cwe-022
- cwe-094/CodeInjection
- cwe-116/IncompleteMultiCharacterSanitization
- cwe-300
- cwe-829
- rust
- ast-generator
- patches
- src
- codegen
- grammar
- autobuild
- src
- codegen
- extractor
- src
- config
- generated
- translate
- ql
- consistency-queries
- integration-tests
- file-exclusions
- _git
- src
- maybe_ignore
- tests
- hello-project
- hello-workspace
- options/cfg
- src
- lib
- codeql/rust
- controlflow
- internal
- generated
- dataflow
- internal
- elements
- internal
- generated
- frameworks
- stdlib
- internal
- security
- internal
- utils/test
- internal
- src/queries
- security
- CWE-327
- CWE-696
- summary
- unusedentities
- test/extractor-tests
- canonical_path
- generated
- AsmClobberAbi
- AsmConst
- AsmDirSpec
- AsmExpr
- AsmLabel
- AsmOperandExpr
- AsmOperandNamed
- AsmOption
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
3,344 files changed
+119638
-28306
lines changedLines changed: 8 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
24 | 24 |
| |
25 | 25 |
| |
26 | 26 |
| |
| 27 | + | |
| 28 | + | |
| 29 | + | |
| 30 | + | |
| 31 | + | |
| 32 | + | |
| 33 | + | |
| 34 | + | |
27 | 35 |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
| 1 | + |
Lines changed: 2 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
86 | 86 |
| |
87 | 87 |
| |
88 | 88 |
| |
89 |
| - | |
| 89 | + | |
| 90 | + |
Lines changed: 1 addition & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
9 | 9 |
| |
10 | 10 |
| |
11 | 11 |
| |
12 |
| - | |
13 |
| - | |
| 12 | + |
Lines changed: 2 additions & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
30 | 30 |
| |
31 | 31 |
| |
32 | 32 |
| |
33 |
| - | |
| 33 | + | |
| 34 | + | |
34 | 35 |
| |
35 | 36 |
| |
36 | 37 |
| |
|
Lines changed: 3 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
19 | 19 |
| |
20 | 20 |
| |
21 | 21 |
| |
22 |
| - | |
| 22 | + | |
23 | 23 |
| |
24 | 24 |
| |
25 | 25 |
| |
| |||
38 | 38 |
| |
39 | 39 |
| |
40 | 40 |
| |
41 |
| - | |
42 |
| - | |
| 41 | + | |
43 | 42 |
| |
44 |
| - | |
45 | 43 |
| |
46 |
| - | |
| 44 | + | |
47 | 45 |
| |
48 | 46 |
| |
49 | 47 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
40 | 40 |
| |
41 | 41 |
| |
42 | 42 |
| |
43 |
| - | |
| 43 | + | |
44 | 44 |
| |
45 | 45 |
| |
46 | 46 |
| |
|
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
79 | 79 |
| |
80 | 80 |
| |
81 | 81 |
| |
82 |
| - | |
| 82 | + | |
83 | 83 |
| |
84 | 84 |
| |
85 | 85 |
| |
|
Lines changed: 27 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
23 | 23 |
| |
24 | 24 |
| |
25 | 25 |
| |
26 |
| - | |
| 26 | + | |
27 | 27 |
| |
| 28 | + | |
| 29 | + | |
| 30 | + | |
28 | 31 |
| |
29 | 32 |
| |
30 | 33 |
| |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
31 | 38 |
| |
32 |
| - | |
33 | 39 |
| |
34 | 40 |
| |
35 | 41 |
| |
36 | 42 |
| |
37 |
| - | |
38 | 43 |
| |
39 | 44 |
| |
40 | 45 |
| |
| 46 | + | |
| 47 | + | |
| 48 | + | |
| 49 | + | |
| 50 | + | |
| 51 | + | |
| 52 | + | |
41 | 53 |
| |
| 54 | + | |
| 55 | + | |
| 56 | + | |
| 57 | + | |
| 58 | + | |
| 59 | + | |
| 60 | + | |
| 61 | + | |
| 62 | + | |
| 63 | + | |
| 64 | + | |
42 | 65 |
| |
43 | 66 |
| |
44 |
| - | |
45 |
| - | |
| 67 | + | |
46 | 68 |
| |
47 | 69 |
| |
48 | 70 |
| |
|
Lines changed: 8 additions & 8 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
50 | 50 |
| |
51 | 51 |
| |
52 | 52 |
| |
53 |
| - | |
| 53 | + | |
54 | 54 |
| |
55 | 55 |
| |
56 | 56 |
| |
57 |
| - | |
58 |
| - | |
59 |
| - | |
60 |
| - | |
61 |
| - | |
62 |
| - | |
63 |
| - | |
64 | 57 |
| |
65 | 58 |
| |
66 | 59 |
| |
| |||
109 | 102 |
| |
110 | 103 |
| |
111 | 104 |
| |
| 105 | + | |
| 106 | + | |
| 107 | + | |
| 108 | + | |
| 109 | + | |
| 110 | + | |
| 111 | + |
0 commit comments