File tree
1,258 files changed
+61634
-17135
lines changed- .devcontainer/swift
- .github
- workflows
- actions
- extractor/tools
- ql
- lib
- change-notes/released
- codeql/actions
- controlflow/internal
- ext/config
- src
- change-notes/released
- test/query-tests
- Security
- CWE-094
- .github/workflows
- CWE-1395
- .github/workflows
- CWE-829/.github/workflows
- Violations Of Best Practice/CodeQL/.github/workflows
- cpp
- downgrades
- 59cb96ca699929b63941e81905f9b8de7eed59a6
- e594389175c098d7225683d0fd8cefcc47d84bc1
- ql
- lib
- change-notes/released
- experimental/cryptography/modules
- semmle/code/cpp
- commons
- controlflow
- exprs
- headers
- ir/dataflow/internal
- models/implementations
- valuenumbering
- upgrades
- 1aa71a4a687fc93f807d4dfeeef70feceeced242
- 59cb96ca699929b63941e81905f9b8de7eed59a6
- src
- Likely Bugs/Format
- Security/CWE
- CWE-190
- CWE-843
- change-notes/released
- test
- library-tests
- controlflow/guards
- dataflow
- models-as-data
- taint-tests
- headers/preprocBlock
- preprocessor/preprocessor
- query-tests
- Likely Bugs/Format/WrongTypeFormatArguments/Buildless
- Security/CWE/CWE-119
- SAMATE
- semmle/tests
- csharp
- autobuilder/Semmle.Autobuild.CSharp
- extractor
- Semmle.Extraction.CSharp.DependencyFetching
- Semmle.Extraction.CSharp/Entities
- Semmle.Extraction.Tests
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- integration-tests
- all-platforms
- autobuild
- blazor_build_mode_none
- BlazorTest
- Components
- Layout
- Pages
- Properties
- wwwroot
- bootstrap
- linux/standalone_dotnet3
- lib
- change-notes/released
- ext
- semmle/code/csharp
- controlflow
- internal
- frameworks/system/runtime
- src
- change-notes/released
- experimental
- CWE-099
- CWE-918
- Security Features
- CWE-1004
- CWE-327/Azure
- CWE-614
- CWE-759
- JsonWebTokenHandler
- Serialization
- backdoor
- dataflow/flowsources
- utils/modelgenerator/internal
- test
- experimental
- CWE-918
- Security Features
- CWE-759
- backdoor
- library-tests
- attributes
- dataflow
- collections
- fields
- flowsources/stored/database/dapper
- global
- indexers
- library
- threat-models
- dispatch
- frameworks
- Aws
- EntityFramework
- NHibernate
- ServiceStack
- sql
- system/data/entity
- index
- partial
- security/dataflow/flowsources
- query-tests
- API Abuse/DisposeNotCalledOnException
- Security Features
- CWE-078
- CWE-079/StoredXSS
- CWE-089
- CWE-090
- CWE-099
- CWE-201/ExposureInTransmittedData
- CWE-327/InsecureSQLConnection
- CWE-643
- CWE-798
- CWE-838
- resources/stubs
- Amazon.Lambda.APIGatewayEvents/2.7.1
- Amazon.Lambda.Core/2.5.0
- Dapper/2.1.35
- EntityFramework/6.5.1
- Microsoft.Extensions.Configuration.Abstractions/8.0.0
- Microsoft.Extensions.Configuration.Binder/8.0.0
- Microsoft.Extensions.Configuration/8.0.0
- Microsoft.Extensions.DependencyInjection.Abstractions/8.0.0
- Microsoft.Extensions.DependencyInjection/8.0.0
- Microsoft.Extensions.Diagnostics.Abstractions/8.0.0
- Microsoft.Extensions.Diagnostics/8.0.0
- Microsoft.Extensions.Http/8.0.0
- Microsoft.Extensions.Logging.Abstractions/8.0.0
- Microsoft.Extensions.Logging/8.0.0
- Microsoft.Extensions.Options.ConfigurationExtensions/8.0.0
- Microsoft.Extensions.Options/8.0.0
- Microsoft.Extensions.Primitives/8.0.0
- Microsoft.Win32.Primitives/4.3.0
- Microsoft.Win32.SystemEvents/9.0.1
- NETStandard.Library/1.6.1
- NHibernate/5.5.2
- ServiceStack.Client/8.5.2
- ServiceStack.Common/8.5.2
- ServiceStack.Interfaces/8.5.2
- ServiceStack.OrmLite.SqlServer/8.5.2
- ServiceStack.OrmLite/8.5.2
- ServiceStack.Text/8.5.2
- ServiceStack/8.5.2
- Stub.System.Data.SQLite.Core.NetStandard/1.0.119
- System.CodeDom/6.0.0
- System.Collections/4.3.0
- System.Configuration.ConfigurationManager
- 6.0.0
- 9.0.1
- System.Console/4.3.0
- System.Data.OleDb/9.0.1
- System.Data.SQLite.Core/1.0.119
- System.Data.SQLite.EF6/1.0.119
- System.Data.SQLite/1.0.119
- System.Data.SqlClient
- 4.8.5
- 4.9.0
- System.Diagnostics.Debug/4.3.0
- System.Diagnostics.DiagnosticSource/8.0.0
- System.Diagnostics.EventLog/9.0.1
- System.Diagnostics.PerformanceCounter/9.0.1
- System.Diagnostics.Tools/4.3.0
- System.Diagnostics.Tracing/4.3.0
- System.Drawing.Common/9.0.1
- System.Globalization.Calendars/4.3.0
- System.Globalization.Extensions/4.3.0
- System.Globalization/4.3.0
- System.IO.Compression/4.3.0
- System.IO.FileSystem/4.3.0
- System.IO/4.3.0
- System.Memory/4.6.0
- System.Net.Http/4.3.0
- System.Net.Primitives/4.3.0
- System.Net.Sockets/4.3.0
- System.Reflection.Extensions/4.3.0
- System.Reflection.Primitives/4.3.0
- System.Reflection/4.3.0
- System.Resources.ResourceManager/4.3.0
- System.Runtime.Extensions/4.3.0
- System.Runtime.Handles/4.3.0
- System.Runtime.InteropServices/4.3.0
- System.Runtime/4.3.0
- System.Security.AccessControl/4.7.0
- System.Security.Cryptography.Algorithms/4.3.0
- System.Security.Cryptography.Cng/4.3.0
- System.Security.Cryptography.Csp/4.3.0
- System.Security.Cryptography.Encoding/4.3.0
- System.Security.Cryptography.ProtectedData
- 8.0.0
- 9.0.1
- System.Security.Cryptography.X509Certificates/4.3.0
- System.Security.Permissions
- 6.0.0
- 9.0.1
- System.Text.Encoding.Extensions/4.3.0
- System.Text.Encoding/4.3.0
- System.Threading.Tasks/4.3.0
- System.Threading.Timer/4.3.0
- System.Windows.Extensions
- 6.0.0
- 9.0.1
- System.Xml.XmlDocument/4.3.0
- _frameworks
- Microsoft.AspNetCore.App
- Microsoft.NETCore.App
- runtime.native.System.Data.SqlClient.sni/4.4.0
- runtime.native.System.IO.Compression/4.3.0
- runtime.native.System.Net.Http/4.3.0
- runtime.native.System/4.3.0
- scripts/stubs
- docs/codeql
- codeql-language-guides
- codeql-overview/codeql-changelog
- ql-language-reference
- reusables
- writing-codeql-queries
- go
- docs/language/learn-ql/go
- documentation/library-coverage
- extractor
- ql
- consistency-queries
- change-notes/released
- lib
- change-notes/released
- ext
- semmle/go
- dataflow/internal
- frameworks
- stdlib
- security
- src
- change-notes/released
- experimental/CWE-942
- test
- experimental/CWE-942
- vendor
- github.com/rs/cors
- library-tests/semmle/go
- dataflow
- ExternalTaintFlow
- ExternalValueFlow
- frameworks/serialization
- javascript
- extractor/src/com/semmle/js/extractor
- ql
- lib
- change-notes/released
- semmle/javascript
- dataflow
- internal
- frameworks
- security
- dataflow
- regexp
- src
- Security
- CWE-020
- CWE-079
- CWE-312/examples
- change-notes/released
- experimental/Security
- CWE-099
- CWE-347
- meta
- alerts
- internal
- test
- library-tests
- TypeScript
- RegressionTests/EmbeddedTypeScriptNoTSConfig
- TSConfigReferences
- src
- frameworks
- Angular2
- Nest
- global
- ReactJS
- Vue
- query-tests/Security
- CWE-020/IncorrectSuffixCheck
- CWE-079/DomBasedXss
- CWE-312
- java
- downgrades/38d02c063878000356a3e5db49d5a6a8f38efe24
- kotlin-extractor
- deps
- src/main/kotlin
- utils
- versions
- v_1_5_0
- v_1_6_0
- v_2_0_0-RC1
- v_2_1_20-Beta1
- ql
- integration-tests/kotlin/all-platforms/diagnostics/kotlin-version-too-new
- lib
- change-notes/released
- config
- semmle/code/java
- dataflow
- internal
- deadcode
- frameworks
- spring
- security
- regexp
- upgrades/1fd1afa7862b82955785edd29820054ab6c9ec81
- src
- Likely Bugs/Resource Leaks
- change-notes/released
- experimental
- Security/CWE
- CWE-016
- CWE-020
- CWE-036
- CWE-073
- CWE-078
- CWE-089
- CWE-094
- CWE-1004
- CWE-200
- CWE-208
- CWE-295
- CWE-297
- CWE-299
- CWE-327
- Azure
- CWE-346
- CWE-347
- CWE-348
- CWE-352
- CWE-400
- CWE-470
- CWE-489
- CWE-502
- CWE-522-DecompressionBombs
- CWE-548
- CWE-555
- CWE-598
- CWE-600
- CWE-601
- CWE-625
- CWE-652
- CWE-665
- CWE-755
- CWE-759
- CWE-939
- semmle/code
- java
- frameworks
- security
- xml
- semmle/code/xml
- utils/modelgenerator/internal
- test
- experimental/query-tests/security
- CWE-020
- CWE-073
- CWE-078
- CWE-089/src/main
- CWE-094
- CWE-1004
- CWE-200
- CWE-208
- NotConstantTimeCheckOnSignature
- TimingAttackAgainstHeader
- TimingAttackAgainstSignagure
- CWE-299
- CWE-327
- CWE-346
- CWE-347
- CWE-348
- CWE-352
- CWE-400
- CWE-470
- CWE-502
- CWE-522-DecompressionBombs
- CWE-555
- CWE-598
- CWE-600
- CWE-601
- CWE-625
- CWE-652
- CWE-755
- CWE-759
- library-tests/frameworks/JaxWs
- query-tests/security/CWE-297
- misc/suite-helpers
- change-notes/released
- python/ql
- lib
- change-notes/released
- semmle/python
- dataflow/new
- internal
- frameworks
- src
- change-notes/released
- test/library-tests/dataflow
- coverage
- variable-capture
- ruby/ql
- lib
- change-notes/released
- codeql/ruby
- controlflow
- internal
- dataflow/internal
- frameworks
- security
- regexp
- typetracking
- src
- change-notes/released
- experimental/decompression-api
- queries/security/cwe-732
- test/library-tests
- controlflow/graph
- dataflow
- call-sensitivity
- global
- frameworks
- Twirp
- active_record
- active_resource
- rust
- ast-generator/src
- extractor/src
- generated
- translate
- ql
- integration-tests
- hello-project
- hello-workspace
- lib
- change-notes/released
- codeql/rust
- controlflow
- internal
- dataflow/internal
- elements
- internal
- generated
- frameworks
- rustcrypto
- stdlib
- security
- utils/test
- src
- change-notes/released
- queries
- security
- CWE-312
- CWE-696
- summary
- test
- extractor-tests/generated
- UseTree
- library-tests
- controlflow
- dataflow
- global
- local
- CONSISTENCY
- models
- sources
- taint
- frameworks/postgres
- path-resolution
- CONSISTENCY
- my2
- my
- variables
- query-tests
- diagnostics
- security
- CWE-089
- CWE-312
- CONSISTENCY
- CWE-696
- schema
- swift/ql
- integration-tests/osx
- hello-ios
- hello-ios.xcodeproj
- project.xcworkspace
- hello-ios
- Assets.xcassets
- AccentColor.colorset
- AppIcon.appiconset
- Preview Content/Preview Assets.xcassets
- hello-xcode
- lib
- change-notes/released
- codeql/swift
- controlflow
- internal
- dataflow
- internal
- regex
- src
- change-notes/released
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
1,258 files changed
+61634
-17135
lines changedLines changed: 3 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
2 | 2 |
| |
3 | 3 |
| |
4 | 4 |
| |
| 5 | + | |
| 6 | + | |
| 7 | + | |
5 | 8 |
| |
6 | 9 |
| |
7 | 10 |
| |
|
Lines changed: 0 additions & 9 deletions
This file was deleted.
Lines changed: 0 additions & 25 deletions
This file was deleted.
Lines changed: 0 additions & 34 deletions
This file was deleted.
Lines changed: 0 additions & 20 deletions
This file was deleted.
Lines changed: 0 additions & 15 deletions
This file was deleted.
Lines changed: 0 additions & 14 deletions
This file was deleted.
Lines changed: 0 additions & 6 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
48 | 48 |
| |
49 | 49 |
| |
50 | 50 |
| |
51 |
| - | |
52 |
| - | |
53 |
| - | |
54 |
| - | |
55 |
| - | |
56 |
| - | |
57 | 51 |
| |
58 | 52 |
| |
59 | 53 |
| |
|
Lines changed: 3 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
218 | 218 |
| |
219 | 219 |
| |
220 | 220 |
| |
| 221 | + | |
221 | 222 |
| |
222 | 223 |
| |
223 | 224 |
| |
| |||
232 | 233 |
| |
233 | 234 |
| |
234 | 235 |
| |
| 236 | + | |
235 | 237 |
| |
236 | 238 |
| |
237 | 239 |
| |
| |||
246 | 248 |
| |
247 | 249 |
| |
248 | 250 |
| |
| 251 | + | |
249 | 252 |
| |
250 | 253 |
| |
251 | 254 |
| |
|
Lines changed: 8 additions & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
2 | 2 |
| |
3 | 3 |
| |
4 | 4 |
| |
| 5 | + | |
| 6 | + | |
| 7 | + | |
| 8 | + | |
5 | 9 |
| |
6 | 10 |
| |
7 |
| - | |
8 |
| - | |
| 11 | + | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
9 | 15 |
| |
10 | 16 |
| |
11 | 17 |
| |
|
0 commit comments