File tree
1,323 files changed
+91078
-14536
lines changed- actions
- extractor/tools
- ql
- integration-tests
- filters-default
- filters
- src
- .github
- actions/action-name
- workflows
- excluded
- included
- lib
- change-notes/released
- codeql/actions/config
- ext/config
- src
- Security
- CWE-077
- CWE-1395
- CWE-275
- CWE-312
- CWE-829
- change-notes
- released
- test/query-tests/Security/CWE-275
- .github/workflows
- config
- cpp
- downgrades
- 0f0a390468a5eb43d1dc72937c028070b106bf53
- 2e2d805ef93d060b813403cb9b51dc72455a4c68
- ql
- lib
- change-notes
- released
- semmle/code/cpp
- dataflow
- exprs
- ir/dataflow/internal
- upgrades
- 0f0a390468a5eb43d1dc72937c028070b106bf53
- e594389175c098d7225683d0fd8cefcc47d84bc1
- src
- Diagnostics
- Internal
- change-notes
- released
- test
- library-tests
- calling-convention
- dataflow/dataflow-tests
- preprocessor/preprocessor
- specifiers2
- query-tests/Diagnostics
- csharp
- autobuilder
- Semmle.Autobuild.CSharp.Tests
- Semmle.Autobuild.Cpp.Tests
- documentation/library-coverage
- downgrades/66044cfa5bbf2ecfabd06ead25e91db2bdd79764
- extractor
- Semmle.Extraction.CSharp.DependencyFetching/SourceGenerators/DotnetSourceGeneratorWrapper
- Semmle.Extraction.CSharp
- CodeAnalysisExtensions
- Entities/Expressions
- Kinds
- Semmle.Util
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- consistency-queries
- integration-tests
- all-platforms
- blazor_build_mode_none
- BlazorTest/Components/Pages
- blazor_net_8
- BlazorTest/Components/Pages
- blazor
- BlazorTest/Components/Pages
- posix
- standalone_dependencies_no_framework
- standalone_dependencies_nuget with_space
- standalone_dependencies_nuget_no_sources
- standalone_dependencies_nuget
- lib
- change-notes
- released
- ext
- generated
- semmle/code/csharp
- controlflow/internal
- dataflow/internal
- exprs
- frameworks
- microsoft/aspnetcore
- security
- upgrades/a2bda57dbc6eea94c50128522aae536e8edd5a3c
- src
- change-notes
- released
- codeql-suites
- utils/modelgenerator/internal
- test
- library-tests
- controlflow/graph
- csharp11
- csharp6
- csharp7.3
- csharp7
- csharp8
- csharp9
- dataflow
- global
- implicittostring
- library
- local
- frameworks/microsoft/aspnetcore/blazor
- stringinterpolation
- query-tests
- API Abuse/NoDisposeCallOnLocalIDisposable
- Bad Practices/Control-Flow/ConstantCondition
- Dead Code/DeadStoreOfLocal
- Security Features/CWE-117
- docs
- codeql
- codeql-language-guides
- codeql-overview
- codeql-changelog
- query-help
- reusables
- writing-codeql-queries
- go
- documentation/library-coverage
- extractor
- toolchain
- ql
- consistency-queries
- change-notes/released
- lib
- change-notes
- released
- ext
- semmle/go/frameworks
- src
- change-notes/released
- test
- experimental
- CWE-285/vendor
- CWE-321-V2/vendor
- CWE-522-DecompressionBombs/vendor
- library-tests/semmle/go
- concepts/LoggerCall/vendor
- github.com/golang/glog
- k8s.io/klog
- dataflow/flowsources/local/database
- vendor
- github.com
- gogf/gf/database/gdb
- nonexistent/sources
- uptrace/bun
- frameworks
- Beego/vendor
- ElazarlGoproxy/vendor
- Email/vendor
- github.com/sendgrid/sendgrid-go/helpers/mail
- Gin/vendor
- GoMicro/vendor
- Iris/vendor
- K8sIoApiCoreV1/vendor
- k8s.io
- apimachinery/pkg/runtime
- api/core/v1
- K8sIoApimachineryPkgRuntime/vendor
- k8s.io/apimachinery/pkg/runtime/schema
- K8sIoClientGo/vendor
- NoSQL/vendor
- Revel/vendor
- SQL
- gogf/vendor
- vendor/github.com/go-pg/pg/orm
- Spew/vendor
- SystemCommandExecutors/vendor
- github.com/codeskyblue/go-sh
- golang.org/x/crypto/ssh
- WebSocket/vendor
- Zap/vendor
- query-tests
- Security
- CWE-020/IncompleteHostnameRegexp/vendor
- CWE-079/vendor
- CWE-089/vendor
- go.mongodb.org/mongo-driver/bson/primitive
- CWE-312/vendor
- github.com/golang/glog
- k8s.io/klog
- CWE-347/vendor
- CWE-640/vendor
- github.com/sendgrid/sendgrid-go/helpers/mail
- CWE-643/vendor
- github.com/antchfx
- htmlquery
- jsonquery
- CWE-798/vendor
- CWE-918/vendor
- filters/ClassifyFiles/vendor/github.com/onsi
- ginkgo
- gomega
- javascript
- extractor
- src/com/semmle/js
- extractor
- parser
- tests
- json
- input
- output/trap
- ui5
- input
- output/trap
- xsjs
- input
- output/trap
- ql
- lib
- change-notes
- released
- ext
- semmle/javascript
- dataflow
- frameworks
- data/internal
- internal/flow_summaries
- security/dataflow
- src
- Expressions
- Security
- CWE-327
- trest
- change-notes
- released
- test
- ApiGraphs/spread
- library-tests
- DOM
- SensitiveActions
- TaintTracking
- frameworks
- WebSocket
- data
- query-tests/Security
- CWE-022/TaintedPath
- CWE-079
- DomBasedXss
- ReflectedXss
- app/api
- CWE-089/untyped
- CWE-200
- CWE-522-DecompressionBombs
- CWE-912
- CWE-918
- Request
- app/api/proxy
- java/ql
- integration-tests/java
- buildless-gradle-boms
- src/main/java/com/fractestexample
- buildless-inherit-trust-store
- buildless-maven-mirrorof
- src
- main
- java/com/example
- resources
- test/java/com/example
- buildless-snapshot-repository
- gradle-sample-without-wrapper-or-gradle-buildless
- query-suite
- lib
- change-notes
- released
- semmle/code/java
- controlflow
- dataflow/internal
- deadcode
- environment
- frameworks/javaee
- security
- src
- Performance
- Telemetry
- change-notes
- released
- codeql-suites
- utils/modelgenerator/internal
- test
- library-tests/dataflow
- capture
- null
- partial
- switchexpr
- taint-ioutils
- this-flow
- query-tests
- StringReplaceAllWithNonRegex
- security/CWE-089/semmle/examples
- stubs/jakarta-persistence-api-3.2.0/jakarta/persistence
- misc
- bazel/3rdparty/tree_sitter_extractors_deps
- codegen
- generators
- lib
- templates
- test
- scripts
- suite-helpers
- change-notes/released
- python/ql
- lib
- change-notes
- released
- src
- Functions
- Resources
- examples
- Variables
- LoopVariableCapture
- examples
- change-notes
- released
- codeql-suites
- test/query-tests
- Functions
- general
- return_values
- Resources
- FileNotAlwaysClosed
- Variables/capture
- ruby/ql
- consistency-queries
- lib
- change-notes/released
- codeql/ruby
- ast
- internal
- controlflow/internal
- dataflow/internal
- src
- change-notes/released
- codeql-suites
- queries/variables
- examples
- test
- library-tests
- ast
- params
- dataflow
- barrier-guards
- global
- local
- params
- query-tests/variables
- DeadStoreOfLocal
- UninitializedLocal
- rust
- ast-generator
- src
- templates
- codegen
- downgrades
- e8707b675dc574aca9863eabcc09ac76f15bb9c2
- initial
- extractor
- macros
- src
- generated
- translate
- ql
- consistency-queries
- integration-tests
- hello-project
- hello-workspace
- exe
- lib
- lib
- change-notes/released
- codeql
- files
- rust
- controlflow/internal
- generated
- dataflow
- internal
- elements
- internal
- generated
- frameworks
- rustcrypto
- stdlib
- internal
- security
- regex
- upgrades
- 256e80c2dceafb43358213b1ac0e386ea6ef73c3
- initial
- utils/test
- src
- change-notes/released
- queries
- diagnostics
- security
- CWE-020
- CWE-022
- CWE-089
- CWE-311
- CWE-312
- CWE-328
- CWE-770
- CWE-825
- summary
- utils/modelgenerator/internal
- test
- extractor-tests
- canonical_path_disabled
- CONSISTENCY
- canonical_path
- CONSISTENCY
- crate_graph
- generated
- AsmExpr
- AssocTypeArg
- BreakExpr
- CallExpr
- ContinueExpr
- ExternCrate
- FieldExpr
- FormatArgsExpr
- Label
- LetExpr
- MacroItems
- CONSISTENCY
- MatchExpr
- MethodCallExpr
- Path
- RecordExprFieldList
- RecordExprField
- RecordExpr
- RecordFieldList
- RecordField
- RecordPatFieldList
- RecordPatField
- RecordPat
- SelfParam
- StructExprField
- StructFieldList
- StructField
- StructPatField
- TypeBound
- Union
- UseTree
- Variant
- utf8
- library-tests
- controlflow
- dataflow
- global
- local
- CONSISTENCY
- modeled
- pointers
- sources
- strings
- path-resolution
- CONSISTENCY
- my2
- my/my4/my5
- type-inference
- loop
- variables
- query-tests
- diagnostics
- security
- CWE-020
- CWE-022
- CWE-089
- CONSISTENCY
- CWE-311
- CWE-312
- CONSISTENCY
- CWE-328
- CWE-770
- CWE-825
- utils-tests/modelgenerator
- schema
- swift
- downgrades/be2357fd0023261478871eff5df5c57df559aa3b
- extractor
- infra
- translators
- ql
- lib
- change-notes
- released
- codeql/swift
- controlflow/internal
- dataflow
- internal
- elements/expr
- internal
- generated
- expr
- upgrades/33db81ad4b606ff9a476c8dabeb9fffbf61aa829
- src
- change-notes/released
- test
- extractor-tests/generated/expr/ExtractFunctionIsolationExpr
- library-tests/dataflow/dataflow
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
1,323 files changed
+91078
-14536
lines changedLines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
37 | 37 |
| |
38 | 38 |
| |
39 | 39 |
| |
| 40 | + | |
40 | 41 |
| |
41 | 42 |
|
Lines changed: 2 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
8 | 8 |
| |
9 | 9 |
| |
10 | 10 |
| |
| 11 | + | |
| 12 | + |
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 |
| - | |
| 1 | + |
Lines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
72 | 72 |
| |
73 | 73 |
| |
74 | 74 |
| |
75 |
| - | |
| 75 | + | |
76 | 76 |
| |
77 | 77 |
| |
78 | 78 |
| |
|
Lines changed: 5 additions & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
8 | 8 |
| |
9 | 9 |
| |
10 | 10 |
| |
| 11 | + | |
11 | 12 |
| |
12 | 13 |
| |
13 | 14 |
| |
14 | 15 |
| |
15 | 16 |
| |
16 | 17 |
| |
| 18 | + | |
| 19 | + | |
| 20 | + | |
17 | 21 |
| |
18 | 22 |
| |
19 | 23 |
| |
| |||
38 | 42 |
| |
39 | 43 |
| |
40 | 44 |
| |
| 45 | + | |
41 | 46 |
| |
42 | 47 |
| |
43 | 48 |
| |
|
0 commit comments