Commit 4c8058d
File tree
848 files changed
+101164
-79235
lines changed- cpp/ql
- lib
- change-notes
- semmle/code/cpp
- ir
- dataflow/internal
- implementation/raw/internal
- rangeanalysis
- src
- Likely Bugs/Arithmetic
- change-notes
- test
- library-tests
- constants/addresses
- dataflow/fields
- ir/ir
- rangeanalysis/SimpleRangeAnalysis
- scopes/parents
- templates
- isfromtemplateinstantiation
- variables
- vector_types
- query-tests
- Best Practices
- SloppyGlobal
- Unused Entities/UnusedLocals
- Critical/UnsafeUseOfThis
- Likely Bugs/Arithmetic/PointlessComparison
- csharp
- documentation/library-coverage
- ql
- lib
- change-notes
- ext/generated
- semmle/code/csharp
- test
- library-tests
- conversion/span
- dataflow
- collections
- flowsources/stored/database/dapper
- library
- frameworks
- Aws
- JsonNET
- NHibernate
- ServiceStack
- nameof
- security/dataflow/flowsources
- query-tests/Security Features
- CWE-089-2
- CWE-089
- CWE-502/UnsafeDeserializationUntrustedInputNewtonsoftJson
- resources/stubs
- Amazon.Lambda.APIGatewayEvents/2.7.3
- Amazon.Lambda.Core/2.8.0
- Antlr3.Runtime/3.5.1
- Azure.Core
- 1.38.0
- 1.47.1
- Azure.Identity
- 1.11.4
- 1.14.2
- Dapper/2.1.66
- EntityFramework/6.5.1
- Iesi.Collections/4.1.1
- Microsoft.Bcl.AsyncInterfaces/8.0.0
- Microsoft.Data.SqlClient/6.1.3
- Microsoft.Extensions.Caching.Abstractions/9.0.4
- Microsoft.Extensions.Caching.Memory/9.0.4
- Microsoft.Extensions.Configuration.Abstractions/10.0.0
- Microsoft.Extensions.Configuration.Binder/10.0.0
- Microsoft.Extensions.Configuration/10.0.0
- Microsoft.Extensions.DependencyInjection.Abstractions/10.0.0
- Microsoft.Extensions.DependencyInjection/10.0.0
- Microsoft.Extensions.Diagnostics.Abstractions
- 10.0.0
- 8.0.0
- Microsoft.Extensions.Diagnostics/10.0.0
- Microsoft.Extensions.Http/10.0.0
- Microsoft.Extensions.Logging.Abstractions/10.0.0
- Microsoft.Extensions.Logging/10.0.0
- Microsoft.Extensions.Options.ConfigurationExtensions/10.0.0
- Microsoft.Extensions.Options/10.0.0
- Microsoft.Extensions.Primitives/10.0.0
- Microsoft.Identity.Client.Extensions.Msal/4.73.1
- Microsoft.Identity.Client/4.73.1
- Microsoft.IdentityModel.Abstractions/7.7.1
- Microsoft.IdentityModel.JsonWebTokens/7.7.1
- Microsoft.IdentityModel.Logging/7.7.1
- Microsoft.IdentityModel.Protocols.OpenIdConnect/7.7.1
- Microsoft.IdentityModel.Protocols/7.7.1
- Microsoft.IdentityModel.Tokens/7.7.1
- Microsoft.NETCore.Platforms/1.0.1
- Microsoft.NETCore.Targets/1.0.1
- Microsoft.Win32.Primitives/4.0.1
- Microsoft.Win32.SystemEvents/10.0.1
- NETStandard.Library
- 1.6.0
- 1.6.1
- NHibernate/5.6.0
- Newtonsoft.Json/13.0.4
- Remotion.Linq.EagerFetching/2.2.0
- Remotion.Linq/2.2.0
- ServiceStack.Client/10.0.4
- ServiceStack.Common/10.0.4
- ServiceStack.Interfaces/10.0.4
- ServiceStack.OrmLite.SqlServer/10.0.4
- ServiceStack.OrmLite
- 10.0.4
- 8.5.2
- ServiceStack.Text
- 10.0.4
- 8.5.2
- ServiceStack/10.0.4
- System.AppContext/4.1.0
- System.Buffers/4.0.0
- System.ClientModel
- 1.0.0
- 1.5.1
- System.Collections.Concurrent/4.0.12
- System.Collections/4.0.11
- System.ComponentModel.Primitives/4.3.0
- System.ComponentModel/4.3.0
- System.Configuration.ConfigurationManager
- 10.0.1
- 9.0.4
- System.Console/4.0.0
- System.Data.OleDb/10.0.1
- System.Data.SQLite.Core/1.0.119
- System.Data.SQLite.EF6/1.0.119
- System.Data.SQLite
- 1.0.119
- 2.0.2
- System.Diagnostics.Debug/4.0.11
- System.Diagnostics.EventLog
- 10.0.1
- 9.0.4
- System.Diagnostics.PerformanceCounter/10.0.1
- System.Diagnostics.Tools/4.0.1
- System.Diagnostics.Tracing/4.1.0
- System.Drawing.Common/10.0.1
- System.Dynamic.Runtime/4.3.0
- System.Globalization.Calendars/4.0.1
- System.Globalization.Extensions/4.0.1
- System.Globalization/4.0.11
- System.IO.Compression.ZipFile/4.0.1
- System.IO.Compression
- 4.1.0
- 4.3.0
- System.IO.FileSystem.Primitives/4.0.1
- System.IO.FileSystem/4.0.1
- System.IO/4.1.0
- System.IdentityModel.Tokens.Jwt/7.7.1
- System.Linq.Expressions
- 4.1.0
- 4.3.0
- System.Linq.Queryable/4.0.1
- System.Linq/4.1.0
- System.Memory.Data
- 1.0.2
- 8.0.1
- System.Memory
- 4.5.5
- 4.6.0
- System.Net.Http
- 4.1.0
- 4.3.0
- System.Net.Primitives/4.0.11
- System.Net.Sockets/4.1.0
- System.Numerics.Vectors/4.5.0
- System.ObjectModel/4.0.12
- System.Reflection.Emit.ILGeneration/4.0.1
- System.Reflection.Emit.Lightweight
- 4.0.1
- 4.7.0
- System.Reflection.Emit
- 4.0.1
- 4.7.0
- System.Reflection.Extensions/4.0.1
- System.Reflection.Primitives/4.0.1
- System.Reflection.TypeExtensions
- 4.1.0
- 4.7.0
- System.Reflection/4.1.0
- System.Resources.ResourceManager/4.0.1
- System.Runtime.Extensions/4.1.0
- System.Runtime.Handles/4.0.1
- System.Runtime.InteropServices.RuntimeInformation/4.0.0
- System.Runtime.InteropServices/4.1.0
- System.Runtime.Numerics/4.0.1
- System.Runtime.Serialization.Formatters/4.3.0
- System.Runtime.Serialization.Primitives/4.3.0
- System.Runtime/4.1.0
- System.Security.Cryptography.Algorithms
- 4.2.0
- 4.3.0
- System.Security.Cryptography.Cng/4.2.0
- System.Security.Cryptography.Csp/4.0.0
- System.Security.Cryptography.Encoding/4.0.0
- System.Security.Cryptography.OpenSsl
- 4.0.0
- 4.3.0
- System.Security.Cryptography.Primitives/4.0.0
- System.Security.Cryptography.ProtectedData
- 10.0.1
- 9.0.1
- 9.0.4
- System.Security.Cryptography.X509Certificates
- 4.1.0
- 4.3.0
- System.Security.Permissions/10.0.1
- System.Text.Encoding.Extensions/4.0.11
- System.Text.Encodings.Web/4.7.2
- System.Text.Encoding/4.0.11
- System.Text.Json/9.0.5
- System.Text.RegularExpressions/4.1.0
- System.Threading.Tasks.Extensions
- 4.0.0
- 4.5.4
- System.Threading.Tasks/4.0.11
- System.Threading.Timer/4.0.1
- System.Threading/4.0.11
- System.Windows.Extensions/10.0.1
- System.Xml.ReaderWriter/4.0.11
- System.Xml.XDocument
- 4.0.11
- 4.3.0
- _frameworks
- Microsoft.AspNetCore.App
- Microsoft.NETCore.App
- runtime.debian.8-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.fedora.23-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.fedora.24-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.native.System.IO.Compression/4.1.0
- runtime.native.System.Net.Http/4.0.1
- runtime.native.System.Security.Cryptography.Apple/4.3.0
- runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.native.System.Security.Cryptography/4.0.0
- runtime.native.System/4.0.0
- runtime.opensuse.13.2-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.opensuse.42.1-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.osx.10.10-x64.runtime.native.System.Security.Cryptography.Apple/4.3.0
- runtime.osx.10.10-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.rhel.7-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.ubuntu.14.04-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.ubuntu.16.04-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- runtime.ubuntu.16.10-x64.runtime.native.System.Security.Cryptography.OpenSsl/4.3.0
- scripts/stubs
- docs/codeql
- ql-language-reference
- reusables
- javascript/ql
- lib
- change-notes
- semmle/javascript
- test
- library-tests/Directives
- query-tests/Expressions/UnknownDirective
- java
- documentation/library-coverage
- ql
- lib
- change-notes
- ext
- semmle/code/java
- security
- regexp
- src
- change-notes
- experimental/semmle/code/java/security
- test
- library-tests
- dataflow/taintsources
- frameworks
- apache-commons-fileupload-1.4
- spring/websocket
- query-tests/ThreadSafe
- examples
- stubs
- apache-commons-fileupload-1.4/org/apache/commons/fileupload
- servlet
- util
- jakarta.servlet-api-6.0.0/jakarta/servlet
- annotation
- descriptor
- http
- springframework-5.8.x/org/springframework/web/socket
- handler
- misc/bazel/cmake
- python
- downgrades/8d257a4a9bc78e39856d6cd33499389fc5148d4f
- extractor
- semmle
- python
- parser
- tests/parser
- tsg-python
- src
- tsp
- src
- tree_sitter
- ql
- lib
- change-notes
- semmle/python
- pointsto
- upgrades/acf8d3b08ae3cfac8833d16efbfa5a10fef86819
- src/experimental/semmle/python/security
- test/experimental/query-tests/Security/CWE-409
- ruby/ql/lib/codeql/ruby/frameworks/actioncontroller
- rust/ql
- lib
- change-notes
- codeql/rust
- dataflow/internal
- frameworks
- stdlib
- internal
- typeinference
- security
- src/queries/security/CWE-825
- test
- library-tests
- dataflow
- collections
- global
- local
- modeled
- models
- pointers
- sources
- env
- file
- net
- stdin
- strings
- taint
- sensitivedata
- type-inference
- query-tests/security
- CWE-022
- src
- CWE-089
- CWE-312
- CWE-770
- CWE-798
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
848 files changed
+101164
-79235
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
Lines changed: 3 additions & 9 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
688 | 688 | | |
689 | 689 | | |
690 | 690 | | |
691 | | - | |
692 | | - | |
693 | | - | |
694 | | - | |
695 | | - | |
696 | | - | |
697 | | - | |
698 | | - | |
699 | | - | |
| 691 | + | |
| 692 | + | |
| 693 | + | |
700 | 694 | | |
701 | 695 | | |
702 | 696 | | |
| |||
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
2679 | 2679 | | |
2680 | 2680 | | |
2681 | 2681 | | |
2682 | | - | |
| 2682 | + | |
2683 | 2683 | | |
2684 | 2684 | | |
2685 | 2685 | | |
| |||
Lines changed: 5 additions & 5 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
306 | 306 | | |
307 | 307 | | |
308 | 308 | | |
309 | | - | |
310 | | - | |
| 309 | + | |
| 310 | + | |
311 | 311 | | |
312 | | - | |
313 | | - | |
| 312 | + | |
| 313 | + | |
314 | 314 | | |
315 | 315 | | |
316 | 316 | | |
| |||
639 | 639 | | |
640 | 640 | | |
641 | 641 | | |
642 | | - | |
| 642 | + | |
643 | 643 | | |
644 | 644 | | |
645 | 645 | | |
| |||
Lines changed: 2 additions & 2 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
950 | 950 | | |
951 | 951 | | |
952 | 952 | | |
953 | | - | |
| 953 | + | |
954 | 954 | | |
955 | 955 | | |
956 | 956 | | |
| |||
1000 | 1000 | | |
1001 | 1001 | | |
1002 | 1002 | | |
1003 | | - | |
| 1003 | + | |
1004 | 1004 | | |
1005 | 1005 | | |
1006 | 1006 | | |
| |||
Lines changed: 2 additions & 18 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
158 | 158 | | |
159 | 159 | | |
160 | 160 | | |
161 | | - | |
162 | | - | |
163 | | - | |
164 | | - | |
165 | | - | |
166 | | - | |
167 | | - | |
168 | | - | |
169 | | - | |
170 | | - | |
171 | | - | |
172 | | - | |
173 | | - | |
174 | | - | |
175 | | - | |
176 | | - | |
177 | 161 | | |
178 | 162 | | |
179 | 163 | | |
| |||
1266 | 1250 | | |
1267 | 1251 | | |
1268 | 1252 | | |
1269 | | - | |
| 1253 | + | |
1270 | 1254 | | |
1271 | 1255 | | |
1272 | 1256 | | |
| |||
1475 | 1459 | | |
1476 | 1460 | | |
1477 | 1461 | | |
1478 | | - | |
| 1462 | + | |
1479 | 1463 | | |
1480 | 1464 | | |
1481 | 1465 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
25 | 25 | | |
26 | 26 | | |
27 | 27 | | |
28 | | - | |
| 28 | + | |
| 29 | + | |
29 | 30 | | |
30 | 31 | | |
31 | 32 | | |
32 | 33 | | |
| 34 | + | |
| 35 | + | |
| 36 | + | |
| 37 | + | |
33 | 38 | | |
34 | 39 | | |
35 | 40 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
Lines changed: 1 addition & 3 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
26 | 26 | | |
27 | 27 | | |
28 | 28 | | |
29 | | - | |
30 | | - | |
31 | | - | |
| 29 | + | |
32 | 30 | | |
33 | 31 | | |
34 | 32 | | |
| |||
Lines changed: 5 additions & 0 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
| 1 | + | |
| 2 | + | |
| 3 | + | |
| 4 | + | |
| 5 | + | |
0 commit comments