File tree
647 files changed
+34226
-11087
lines changed- .github/workflows
- config
- cpp
- autobuilder
- Semmle.Autobuild.Cpp.Tests
- Semmle.Autobuild.Cpp
- downgrades/fc81eb5a3a7cdde8d9ad813da1e8f1e90dadbb91
- ql
- lib
- change-notes
- semmle/code/cpp
- controlflow
- dataflow/internal
- tainttracking1
- tainttracking2
- ir/dataflow
- internal
- tainttracking1
- tainttracking2
- tainttracking3
- rangeanalysis/new/internal/semantic/analysis
- security
- upgrades/0a9eb01d3650642e013eb86be45d952289537f91
- src
- Critical
- Likely Bugs/Leap Year
- Security/CWE/CWE-190
- change-notes
- experimental/Security/CWE/CWE-1240
- test
- experimental/query-tests/Security/CWE
- CWE-1240
- library
- CWE-193/array-access
- library-tests
- arguments
- controlflow
- controlflow
- guards-ir
- guards
- dataflow
- DefaultTaintTracking
- annotate_path_to_sink
- annotate_sinks_only
- globals
- dataflow-tests
- fields
- recursion
- security-taint
- syntax-zoo
- query-tests
- Critical
- MemoryFreed
- MissingCheckScanf
- Likely Bugs/Leap Year/Adding365DaysPerYear
- Security/CWE
- CWE-119
- SAMATE
- semmle/tests
- CWE-134/semmle/argv
- CWE-416/semmle/tests/UseAfterFree
- CWE-497/semmle/tests
- csharp
- actions/create-extractor-pack
- autobuilder
- Semmle.Autobuild.CSharp.Tests
- Semmle.Autobuild.CSharp
- documentation/library-coverage
- extractor
- Semmle.Extraction.CIL.Driver
- Semmle.Extraction.CIL
- Semmle.Extraction.CSharp.DependencyFetching
- Semmle.Extraction.CSharp.DependencyStubGenerator
- Semmle.Extraction.CSharp.Driver
- Semmle.Extraction.CSharp.Standalone
- Semmle.Extraction.CSharp.StubGenerator
- Semmle.Extraction.CSharp.Util
- Semmle.Extraction.CSharp
- Entities
- Expressions
- Extractor
- Semmle.Extraction.Tests
- Semmle.Extraction
- Semmle.Util.Tests
- Semmle.Util
- ql
- integration-tests
- all-platforms
- cshtml_standalone_flowsteps
- cshtml_standalone
- cshtml
- diag_dotnet_incompatible
- diag_missing_project_files
- diag_missing_xamarin_sdk
- diag_recursive_generics
- dotnet_build
- dotnet_no_args_inject
- dotnet_pack
- dotnet_publish
- dotnet_run
- standalone_dependencies_net48
- standalone
- posix-only
- dotnet_test_mstest
- dotnet_test
- inherit-env-vars
- standalone_dependencies_multi_target
- standalone_dependencies_nuget
- standalone_dependencies
- warn_as_error
- windows-only/standalone_dependencies
- lib
- change-notes
- ext
- semmle/code
- cil
- csharp
- dataflow/internal
- tainttracking1
- tainttracking2
- tainttracking3
- tainttracking4
- tainttracking5
- security/dataflow
- src
- Telemetry
- change-notes
- experimental/dataflow/flowsources
- test
- experimental/Security Features
- CWE-1004
- CookieHttpOnlyFalseSystemWeb
- CookieWithoutHttpOnlySystemWeb
- ConfigEmpty
- ConfigFalse
- HttpCookiesTrue
- CWE-614
- RequireSSLFalseSystemWeb
- RequireSSLSystemWeb
- ConfigEmpty
- ConfigFalse
- FormsTrue
- HttpCookiesTrue
- library-tests
- asp/basic
- assemblies
- cil
- attributes
- consistency
- dataflow
- enums
- functionPointers
- init-only-prop
- typeAnnotations
- conversion
- boxing
- operator
- csharp9
- dataflow
- flowsources/remote
- global
- library
- parameters
- standalone/errorrecovery
- query-tests
- Nullness
- Security Features
- CWE-079/XSSAsp
- CWE-338
- CWE-601/UrlRedirect
- Telemetry
- LibraryUsage
- SupportedExternalApis
- SupportedExternalSinks
- SupportedExternalSources
- resources/stubs
- Antlr3.Runtime/3.5.1
- Dapper/2.0.90
- Iesi.Collections/4.0.4
- Microsoft.NETCore.Platforms/5.0.0
- Microsoft.Win32.Registry/4.7.0
- Microsoft.Win32.SystemEvents/5.0.0
- NHibernate/5.4.6
- Newtonsoft.Json/13.0.3
- Remotion.Linq.EagerFetching/2.2.0
- Remotion.Linq/2.2.0
- ServiceStack.Client/6.2.0
- ServiceStack.Common/6.2.0
- ServiceStack.Interfaces/6.2.0
- ServiceStack.OrmLite.SqlServer/6.2.0
- ServiceStack.OrmLite/6.2.0
- ServiceStack.Text/6.2.0
- ServiceStack/6.2.0
- Stub.System.Data.SQLite.Core.NetStandard/1.0.116
- System.Configuration.ConfigurationManager/6.0.0
- System.Data.SQLite.Core/1.0.116
- System.Data.SQLite.EF6/1.0.116
- System.Data.SQLite/1.0.116
- System.Data.SqlClient/4.8.3
- System.Drawing.Common/5.0.2
- System.Security.AccessControl/4.7.0
- System.Security.Principal.Windows/4.7.0
- _frameworks
- Microsoft.AspNetCore.App
- Microsoft.NETCore.App
- runtime.native.System.Data.SqlClient.sni/4.7.0
- runtime.win-arm64.runtime.native.System.Data.SqlClient.sni/4.4.0
- runtime.win-x64.runtime.native.System.Data.SqlClient.sni/4.4.0
- runtime.win-x86.runtime.native.System.Data.SqlClient.sni/4.4.0
- utils
- modeleditor
- modelgenerator/dataflow
- scripts
- stubs
- docs/codeql/writing-codeql-queries
- go
- extractor
- vendor
- golang.org/x/tools
- go
- packages
- types/objectpath
- internal
- event/keys
- gcimporter
- typeparams
- ql
- lib
- change-notes
- semmle/go/dataflow/internal
- tainttracking1
- tainttracking2
- test
- library-tests/semmle/go/frameworks/Twirp
- query-tests/Security/CWE-681
- javascript/ql
- experimental/adaptivethreatmodeling
- lib/experimental/adaptivethreatmodeling
- modelbuilding/extraction
- test/endpoint_large_scale
- lib/semmle/javascript
- dataflow
- frameworks
- AngularJS
- security/dataflow
- src/meta/analysis-quality
- test/library-tests/DependencyModuleImports
- java
- documentation/library-coverage
- ql
- lib
- change-notes
- ext
- semmle/code/java
- dataflow/internal
- tainttracking1
- tainttracking2
- tainttracking3
- frameworks
- regex
- security
- src
- Security/CWE/CWE-330
- examples
- change-notes
- experimental/Security/CWE/CWE-1004
- test-kotlin1/library-tests/dataflow/foreach
- test-kotlin2/library-tests/vararg
- test
- query-tests/security/CWE-330
- stubs/esapi-2.0.1/org/owasp/esapi
- reference
- python/ql
- lib
- change-notes
- semmle/python
- dataflow/new/internal
- tainttracking1
- tainttracking2
- tainttracking3
- tainttracking4
- frameworks
- security/dataflow
- src/meta/alerts
- test
- experimental
- dataflow
- TestUtil
- basic
- coverage-py3
- coverage
- enclosing-callable
- import-star
- module-initialization
- regression
- sensitive-data
- strange-essaflow
- summaries
- tainttracking
- basic
- typetracking-summaries
- typetracking
- import-resolution
- package/subpackage
- query-tests/Security
- CWE-022-TarSlip
- CWE-022-UnsafeUnpacking
- CWE-074-TemplateInjection
- CWE-079
- CWE-091-XsltInjection
- CWE-113
- CWE-1236
- CWE-176
- CWE-208
- TimingAttackAgainstHash
- TimingAttackAgainstSensitiveInfo
- CWE-287-ConstantSecretKey
- CWE-327-UnsafeUsageOfClientSideEncryptionVersion
- CWE-348
- CWE-522
- CWE-614
- library-tests
- PointsTo/new
- frameworks
- data
- django-orm
- internal-ql-helpers
- modeling-example
- query-tests/Security
- CWE-020-ExternalAPIs
- CWE-022-PathInjection
- CWE-022-TarSlip
- CWE-078-CommandInjection-py2
- CWE-078-CommandInjection
- CWE-079-ReflectedXss
- CWE-090-LdapInjection
- CWE-094-CodeInjection
- CWE-117-LogInjection
- CWE-209-StackTraceExposure
- CWE-285-PamAuthorization
- CWE-312-CleartextLogging
- CWE-312-CleartextStorage-py3
- CWE-312-CleartextStorage
- CWE-327-WeakSensitiveDataHashing
- CWE-502-UnsafeDeserialization
- CWE-601-UrlRedirect
- CWE-611-Xxe
- CWE-643-XPathInjection
- CWE-730-PolynomialReDoS
- CWE-730-RegexInjection
- CWE-776-XmlBomb
- CWE-798-HardcodedCredentials
- CWE-918-ServerSideRequestForgery
- CWE-943-NoSqlInjection
- ql/ql
- src/codeql_ql
- ast
- style
- test/queries/style/RedundantImport
- folder
- ruby/ql
- consistency-queries
- lib
- change-notes
- codeql/ruby
- dataflow
- internal
- tainttracking1
- frameworks
- core
- rack/internal
- regexp/internal
- security
- typetracking
- internal
- src
- queries/modeling
- utils/modeleditor
- test
- TestUtilities
- library-tests/dataflow
- array-flow
- hash-flow
- params
- type-tracker
- query-tests/utils/modeleditor
- lib
- other_lib
- lib
- swift
- downgrades/60be249ad164f6e4b43c203323f1b3956dc97c2f
- extractor/translators
- integration-tests
- osx-only/autobuilder/xcode-fails-spm-works
- Sources/hello-world
- codeql-swift-autobuild-test.xcodeproj
- codeql-swift-autobuild-test
- ql
- lib
- change-notes
- codeql/swift
- dataflow/internal
- tainttracking1
- frameworks
- StandardLibrary
- generated
- pattern
- security
- upgrades/b83ff9c60c2bb4be2f3d1d4810268c557eb38f19
- src/change-notes
- test
- extractor-tests/patterns
- library-tests/dataflow/taint/libraries
- query-tests/Security
- CWE-311
- CWE-312
- CWE-327
- swift-autobuilder
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
647 files changed
+34226
-11087
lines changedLines changed: 1 addition & 1 deletion
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
12 | 12 |
| |
13 | 13 |
| |
14 | 14 |
| |
15 |
| - | |
| 15 | + | |
16 | 16 |
| |
17 | 17 |
| |
18 | 18 |
| |
|
Lines changed: 2 additions & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
28 | 28 |
| |
29 | 29 |
| |
30 | 30 |
| |
31 |
| - | |
| 31 | + | |
32 | 32 |
| |
33 |
| - | |
| 33 | + | |
34 | 34 |
| |
35 | 35 |
| |
36 | 36 |
| |
|
Lines changed: 6 additions & 6 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
72 | 72 |
| |
73 | 73 |
| |
74 | 74 |
| |
75 |
| - | |
| 75 | + | |
76 | 76 |
| |
77 |
| - | |
| 77 | + | |
78 | 78 |
| |
79 | 79 |
| |
80 |
| - | |
81 |
| - | |
82 |
| - | |
83 |
| - | |
| 80 | + | |
| 81 | + | |
| 82 | + | |
| 83 | + | |
84 | 84 |
| |
85 | 85 |
| |
86 | 86 |
| |
|
Lines changed: 1 addition & 0 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
44 | 44 |
| |
45 | 45 |
| |
46 | 46 |
| |
| 47 | + |
Lines changed: 1 addition & 5 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
462 | 462 |
| |
463 | 463 |
| |
464 | 464 |
| |
465 |
| - | |
466 |
| - | |
467 |
| - | |
468 |
| - | |
469 | 465 |
| |
470 | 466 |
| |
471 | 467 |
| |
| |||
534 | 530 |
| |
535 | 531 |
| |
536 | 532 |
| |
537 |
| - | |
| 533 | + |
Lines changed: 4 additions & 3 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
326 | 326 |
| |
327 | 327 |
| |
328 | 328 |
| |
329 |
| - | |
| 329 | + | |
330 | 330 |
| |
331 | 331 |
| |
332 | 332 |
| |
| |||
337 | 337 |
| |
338 | 338 |
| |
339 | 339 |
| |
| 340 | + | |
340 | 341 |
| |
341 | 342 |
| |
342 |
| - | |
343 |
| - | |
| 343 | + | |
| 344 | + | |
344 | 345 |
| |
345 | 346 |
| |
346 | 347 |
| |
|
Lines changed: 4 additions & 4 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
2 | 2 |
| |
3 | 3 |
| |
4 | 4 |
| |
5 |
| - | |
| 5 | + | |
6 | 6 |
| |
7 | 7 |
| |
8 | 8 |
| |
| |||
11 | 11 |
| |
12 | 12 |
| |
13 | 13 |
| |
14 |
| - | |
15 |
| - | |
| 14 | + | |
| 15 | + | |
16 | 16 |
| |
17 | 17 |
| |
18 | 18 |
| |
19 |
| - | |
| 19 | + | |
20 | 20 |
| |
21 | 21 |
| |
22 | 22 |
| |
|
Lines changed: 2 additions & 2 deletions
Original file line number | Diff line number | Diff line change | |
---|---|---|---|
| |||
1 | 1 |
| |
2 | 2 |
| |
3 | 3 |
| |
4 |
| - | |
| 4 | + | |
5 | 5 |
| |
6 | 6 |
| |
7 | 7 |
| |
| |||
17 | 17 |
| |
18 | 18 |
| |
19 | 19 |
| |
20 |
| - | |
| 20 | + | |
21 | 21 |
| |
22 | 22 |
| |
23 | 23 |
| |
|
0 commit comments