File tree
3,052 files changed
+68552
-155274
lines changed- .github
- workflows
- actions/ql
- lib
- src
- Security
- CWE-077
- CWE-094
- CWE-1395
- CWE-275
- CWE-285
- CWE-312
- CWE-349
- CWE-367
- CWE-571
- CWE-829
- Violations Of Best Practice/CodeQL
- experimental/Security
- CWE-088
- CWE-829
- config
- cpp
- downgrades
- 5491582ac8511726e12fae3e2399000f9201cd9a
- 7bc12b02a4363149f0727a4bce07952dbb9d98aa
- 827dbc206ea55377e032a8a934c8903fedc50fa0
- e70d0b653187b93d9688f21c9db46bb1cd46ab78
- ql
- lib
- change-notes
- experimental/quantum
- OpenSSL
- AlgorithmInstances
- AlgorithmValueConsumers
- Operations
- ext
- semmle/code/cpp
- dataflow
- exprs
- ir
- dataflow/internal
- implementation
- aliased_ssa
- gvn
- raw
- gvn
- unaliased_ssa
- gvn
- internal
- rangeanalysis/new
- internal/semantic/analysis
- upgrades
- 7bc12b02a4363149f0727a4bce07952dbb9d98aa
- 827dbc206ea55377e032a8a934c8903fedc50fa0
- e38346051783182ea75822e4adf8d4c6a949bc37
- e70d0b653187b93d9688f21c9db46bb1cd46ab78
- utils/test
- src
- Critical
- Metrics/Dependencies
- Security/CWE/CWE-089
- change-notes
- jsf/4.07 Header Files
- test
- experimental/library-tests
- quantum
- rangeanalysis/rangeanalysis
- library-tests
- dataflow
- external-models
- taint-tests
- includes/includes
- ir/ir
- macros/inmacroexpansion
- ptr_to_member/segfault
- templates
- instantiation_directive
- isfromtemplateinstantiation
- switch
- type_instantiations
- type_sizes
- unspecified_type/types
- variables/variables
- query-tests
- Critical/GlobalUseBeforeInit
- Security/CWE/CWE-089/SqlTainted
- csharp
- documentation/library-coverage
- ql
- campaigns/Solorigate
- lib
- src
- lib
- ext
- semmle/code/csharp
- dataflow
- internal/rangeanalysis
- frameworks
- security/dataflow
- src
- Security Features/CWE-327
- change-notes
- codeql-suites
- test
- query-tests/Security Features
- CWE-089-2
- CWE-089
- resources/stubs
- Azure.Core/1.38.0
- Azure.Identity/1.11.4
- Microsoft.Bcl.AsyncInterfaces/1.1.1
- Microsoft.Bcl.Cryptography/9.0.4
- Microsoft.Data.SqlClient.SNI.runtime/6.0.2
- Microsoft.Data.SqlClient/6.0.2
- Microsoft.Extensions.Caching.Abstractions/9.0.4
- Microsoft.Extensions.Caching.Memory/9.0.4
- Microsoft.Extensions.DependencyInjection.Abstractions/9.0.4
- Microsoft.Extensions.Logging.Abstractions/9.0.4
- Microsoft.Extensions.Options/9.0.4
- Microsoft.Extensions.Primitives/9.0.4
- Microsoft.Identity.Client.Extensions.Msal/4.61.3
- Microsoft.Identity.Client/4.61.3
- Microsoft.IdentityModel.Abstractions/7.5.0
- Microsoft.IdentityModel.JsonWebTokens/7.5.0
- Microsoft.IdentityModel.Logging/7.5.0
- Microsoft.IdentityModel.Protocols.OpenIdConnect/7.5.0
- Microsoft.IdentityModel.Protocols/7.5.0
- Microsoft.IdentityModel.Tokens/7.5.0
- Microsoft.SqlServer.Server/1.0.0
- System.ClientModel/1.0.0
- System.Configuration.ConfigurationManager/9.0.4
- System.Diagnostics.DiagnosticSource/6.0.1
- System.Diagnostics.EventLog/9.0.4
- System.IdentityModel.Tokens.Jwt/7.5.0
- System.Memory.Data/1.0.2
- System.Memory/4.5.4
- System.Numerics.Vectors/4.5.0
- System.Runtime.CompilerServices.Unsafe/6.0.0
- System.Security.Cryptography.Pkcs/9.0.4
- System.Security.Cryptography.ProtectedData/9.0.4
- System.Text.Encodings.Web/4.7.2
- System.Text.Json/4.7.2
- System.Threading.Tasks.Extensions/4.5.4
- scripts/stubs
- docs
- codeql/codeql-language-guides
- go/ql
- consistency-queries
- lib
- change-notes
- semmle/go
- src
- codeql-suites
- test
- library-tests/semmle/go
- Decl
- Types
- query-tests/Security
- CWE-681
- CWE-770
- javascript/ql
- integration-tests/query-suite
- lib
- change-notes
- ext
- semmle/javascript
- frameworks
- src
- Security
- CWE-094
- examples
- CWE-312
- examples
- change-notes
- codeql-suites
- experimental
- Security/CWE-094
- examples
- semmle/javascript
- test
- experimental
- Execa
- CommandInjection
- PathInjection
- Security/CWE-094
- .github/workflows
- TypeOrm
- library-tests
- TripleDot
- frameworks
- Nest
- global
- local
- ReactJS
- query-tests/Security
- CWE-022/TaintedPath
- CWE-078/CommandInjection
- CWE-094
- CodeInjection
- ExpressionInjection
- .github/workflows
- action1
- action2
- CWE-312
- .github/workflows
- java
- kotlin-extractor
- ql
- integration-tests/java/query-suite
- lib
- experimental/quantum
- external
- semmle
- code
- configfiles
- java
- arithmetic
- comparison
- controlflow
- internal
- unreachableblocks
- dataflow
- internal
- rangeanalysis
- deadcode
- frameworks
- dispatch
- internal
- environment
- frameworks
- android
- apache
- camel
- gigaspaces
- google
- guava
- gwt
- hudson
- j2objc
- jackson
- javaee
- ejb
- jsf
- javase
- kotlin
- mdht
- owasp
- play
- ratpack
- rundeck
- spring
- metrics
- stapler
- struts
- metrics
- os
- regex
- security
- internal
- regexp
- xml
- files
- utils/test/internal
- src
- Language Abuse
- Likely Bugs/Concurrency
- Performance
- Violations of Best Practice/Undesirable Calls
- change-notes
- codeql-suites
- experimental
- Security/CWE
- CWE-020
- CWE-036
- CWE-073
- CWE-078
- CWE-200
- CWE-400
- CWE-625
- quantum
- Examples
- InventorySlices
- test
- library-tests
- guards12
- guards
- query-tests
- CallsToRunnableRun
- Nullness
- RangeAnalysis
- ScheduledThreadPoolExecutorZeroThread
- security
- CWE-022/semmle/tests
- CWE-023/semmle/tests
- CWE-074
- JndiInjection
- XsltInjection
- CWE-079/semmle/tests
- CWE-094
- ApkInstallationTest
- GroovyInjection
- JexlInjection
- MvelInjection
- SpelInjection
- TemplateInjection
- CWE-266
- CWE-295/InsecureTrustManager
- CWE-312/CleartextStorageCookie
- CWE-326
- CWE-330
- CWE-347
- CWE-441
- CWE-470
- CWE-489/webview-debugging
- CWE-502
- CWE-522
- InsecureBasicAuth
- InsecureLdapAuth
- CWE-552
- CWE-611
- CWE-643
- CWE-730
- ExpRedos
- PolyRedos
- RegexInjection
- CWE-780
- CWE-917
- CWE-918
- mad
- CWE-925
- CWE-927
- ImplicitPendingIntents
- misc
- bazel/3rdparty/tree_sitter_extractors_deps
- codegen
- generators
- lib
- templates
- test
- scripts
- suite-helpers
- python
- extractor
- tests/parser
- tsg-python/tsp
- src
- tree_sitter
- ql
- lib
- change-notes
- semmle/python/security/internal
- src
- Resources
- codeql-suites
- test/query-tests/Resources/FileNotAlwaysClosed
- ql/ql
- src
- codeql_ql/ast
- internal
- queries/overlay
- test/queries/overlay/InlineOverlayCaller
- ruby
- downgrades/dc51d416301df12df5b70fbc4338de6cc1f82bfd
- extractor
- src
- ql
- lib
- codeql/ruby/ast/internal
- upgrades/40a6b0a5e81115bd870b3a12a1fe954b06362bb7
- utils/test
- src
- codeql-suites
- queries/variables
- test/query-tests
- meta/TaintedNodes
- security
- cwe-078/CommandInjection
- cwe-829
- rust
- ast-generator
- src
- templates
- downgrades
- 8e9b0c516ae822286689672d1020707020128a19
- f72a3d8d021c81c67ba046c6af15c61a79cb8163
- extractor
- src
- generated
- nightly-toolchain
- translate
- ql
- integration-tests/query-suite
- lib
- change-notes
- codeql/rust
- dataflow/internal
- elements
- internal
- generated
- internal
- security
- upgrades
- e3b3765116ecb8d796979f0b4787926cb8d691b5
- f72a3d8d021c81c67ba046c6af15c61a79cb8163
- src
- change-notes
- queries/security/CWE-825
- test
- extractor-tests/generated
- Abi
- ArgList
- ArrayListExpr
- ArrayRepeatExpr
- ArrayTypeRepr
- AsmClobberAbi
- AsmConst
- AsmDirSpec
- AsmExpr
- AsmLabel
- AsmOperandExpr
- AsmOperandNamed
- AsmOptionsList
- AsmOption
- AsmRegOperand
- AsmRegSpec
- AsmSym
- AssocTypeArg
- Attr
- AwaitExpr
- BecomeExpr
- BinaryExpr
- BlockExpr
- BoxPat
- BreakExpr
- CallExpr
- CastExpr
- ClosureBinder
- ClosureExpr
- Comment
- ConstArg
- ConstBlockPat
- ConstParam
- Const
- ContinueExpr
- DynTraitTypeRepr
- Enum
- ExprStmt
- ExternBlock
- ExternCrate
- ExternItemList
- FieldExpr
- FnPtrTypeRepr
- ForExpr
- ForTypeRepr
- FormatArgsExpr
- Function
- GenericArgList
- GenericParamList
- IdentPat
- IfExpr
- ImplTraitTypeRepr
- Impl
- IndexExpr
- InferTypeRepr
- ItemList
- Label
- LetElse
- LetExpr
- LetStmt
- LifetimeArg
- LifetimeParam
- Lifetime
- LiteralExpr
- LiteralPat
- LoopExpr
- MacroBlockExpr
- MacroCall
- MacroDef
- MacroExpr
- MacroItems
- MacroPat
- MacroRules
- MacroTypeRepr
- MatchArmList
- MatchArm
- MatchExpr
- MatchGuard
- Meta
- MethodCallExpr
- Module
- NameRef
- Name
- NeverTypeRepr
- OffsetOfExpr
- OrPat
- ParamList
- Param
- ParenExpr
- ParenPat
- ParenTypeRepr
- ParenthesizedArgList
- Path
- PrefixExpr
- PtrTypeRepr
- RangeExpr
- RangePat
- RefExpr
- RefPat
- RefTypeRepr
- Rename
- RestPat
- RetTypeRepr
- ReturnExpr
- ReturnTypeSyntax
- SelfParam
- SlicePat
- SliceTypeRepr
- SourceFile
- Static
- StmtList
- StructExprFieldList
- StructExprField
- StructExpr
- StructFieldList
- StructField
- StructPatFieldList
- StructPatField
- StructPat
- Struct
- TokenTree
- TraitAlias
- Trait
- TryExpr
- TupleExpr
- TupleFieldList
- TupleField
- TuplePat
- TupleStructPat
- TupleTypeRepr
- TypeAlias
- TypeArg
- TypeBoundList
- TypeBound
- TypeParam
- UnderscoreExpr
- Union
- UseBoundGenericArgs
- UseTreeList
- UseTree
- Use
- VariantList
- Variant
- Visibility
- WhereClause
- WherePred
- WhileExpr
- WildcardPat
- YeetExpr
- YieldExpr
- library-tests
- dataflow
- global
- CONSISTENCY
- models
- CONSISTENCY
- sources
- CONSISTENCY
- type-inference
- CONSISTENCY
- variables
- CONSISTENCY
- query-tests/security
- CWE-312/CONSISTENCY
- CWE-825
- CONSISTENCY
- schema
- swift/ql
- lib
- codeql/swift/generated
- src
- test/extractor-tests/generated
- AvailabilityInfo
- Diagnostics
- File
- KeyPathComponent
- decl
- Accessor
- AssociatedTypeDecl
- CapturedDecl
- ClassDecl
- ConcreteVarDecl
- EnumDecl
- ExtensionDecl
- IfConfigDecl
- ImportDecl
- MacroDecl
- ModuleDecl
- NamedFunction
- OpaqueTypeDecl
- ParamDecl
- PoundDiagnosticDecl
- expr
- AppliedPropertyWrapperExpr
- CopyExpr
- DotSyntaxCallExpr
- DynamicLookupExpr
- EnumIsCaseExpr
- ExtractFunctionIsolationExpr
- IdentityExpr
- ImplicitConversionExpr
- InitializerRefCallExpr
- KeyPathExpr
- MethodLookupExpr
- ObjectLiteralExpr
- OpenExistentialExpr
- PackExpansionExpr
- PostfixUnaryExpr
- PropertyWrapperValuePlaceholderExpr
- SingleValueStmtExpr
- TypeValueExpr
- stmt
- DiscardStmt
- FailStmt
- ForEachStmt
- PoundAssertStmt
- SwitchStmt
- type
- BuiltinIntegerType
- BuiltinType
- DynamicSelfType
- ExistentialType
- InOutType
- IntegerType
- ModuleType
- OpaqueTypeArchetypeType
- OpenedArchetypeType
- PackType
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
3,052 files changed
+68552
-155274
lines changedLines changed: 0 additions & 4 deletions
This file was deleted.
Lines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
16 | 16 |
| |
17 | 17 |
| |
18 | 18 |
| |
| 19 | + | |
19 | 20 |
| |
20 | 21 |
| |
21 | 22 |
| |
|
Lines changed: 0 additions & 23 deletions
This file was deleted.
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
53 | 53 |
| |
54 | 54 |
| |
55 | 55 |
| |
56 |
| - | |
| 56 | + | |
57 | 57 |
| |
58 | 58 |
| |
59 | 59 |
| |
|
Lines changed: 0 additions & 1 deletion
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 | 1 |
| |
2 |
| - | |
| 2 | + | |
3 | 3 |
| |
4 | 4 |
| |
5 | 5 |
| |
|
Lines changed: 6 additions & 4 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
| 1 | + | |
| 2 | + | |
| 3 | + | |
2 | 4 |
| |
3 | 5 |
| |
4 | 6 |
| |
| |||
10 | 12 |
| |
11 | 13 |
| |
12 | 14 |
| |
13 |
| - | |
| 15 | + | |
14 | 16 |
| |
15 | 17 |
| |
16 | 18 |
| |
17 |
| - | |
| 19 | + | |
18 | 20 |
| |
19 | 21 |
| |
20 | 22 |
| |
| |||
34 | 36 |
| |
35 | 37 |
| |
36 | 38 |
| |
37 |
| - | |
| 39 | + |
Lines changed: 6 additions & 4 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
| 1 | + | |
| 2 | + | |
| 3 | + | |
2 | 4 |
| |
3 | 5 |
| |
4 | 6 |
| |
| |||
10 | 12 |
| |
11 | 13 |
| |
12 | 14 |
| |
13 |
| - | |
| 15 | + | |
14 | 16 |
| |
15 | 17 |
| |
16 | 18 |
| |
17 |
| - | |
| 19 | + | |
18 | 20 |
| |
19 | 21 |
| |
20 | 22 |
| |
| |||
34 | 36 |
| |
35 | 37 |
| |
36 | 38 |
| |
37 |
| - | |
| 39 | + |
Lines changed: 7 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
| 1 | + | |
| 2 | + | |
| 3 | + | |
2 | 4 |
| |
3 | 5 |
| |
4 | 6 |
| |
| |||
35 | 37 |
| |
36 | 38 |
| |
37 | 39 |
| |
38 |
| - | |
| 40 | + | |
39 | 41 |
| |
40 | 42 |
| |
41 | 43 |
| |
| |||
62 | 64 |
| |
63 | 65 |
| |
64 | 66 |
| |
65 |
| - | |
| 67 | + | |
66 | 68 |
| |
67 | 69 |
| |
68 | 70 |
| |
| |||
111 | 113 |
| |
112 | 114 |
| |
113 | 115 |
| |
114 |
| - | |
115 |
| - | |
| 116 | + | |
| 117 | + |
Lines changed: 7 additions & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
| 1 | + | |
| 2 | + | |
| 3 | + | |
2 | 4 |
| |
3 | 5 |
| |
4 | 6 |
| |
| |||
35 | 37 |
| |
36 | 38 |
| |
37 | 39 |
| |
38 |
| - | |
| 40 | + | |
39 | 41 |
| |
40 | 42 |
| |
41 | 43 |
| |
| |||
62 | 64 |
| |
63 | 65 |
| |
64 | 66 |
| |
65 |
| - | |
| 67 | + | |
66 | 68 |
| |
67 | 69 |
| |
68 | 70 |
| |
| |||
111 | 113 |
| |
112 | 114 |
| |
113 | 115 |
| |
114 |
| - | |
115 |
| - | |
| 116 | + | |
| 117 | + |
0 commit comments