File tree
761 files changed
+48224
-24585
lines changed- .github/workflows
- actions
- extractor
- ql
- lib
- change-notes/released
- codeql
- actions
- ast/internal
- controlflow
- internal
- dataflow
- security
- src
- Security/CWE-829
- change-notes/released
- experimental/Security/CWE-829
- cpp/ql
- lib
- change-notes
- released
- experimental
- cryptography
- modules
- utils/OpenSSL
- semmle/code/cpp/rangeanalysis
- semmle/code/cpp
- commons
- controlflow
- internal
- dataflow/internal
- ir
- dataflow/internal
- implementation
- aliased_ssa
- raw
- internal
- unaliased_ssa
- internal
- models/interfaces
- rangeanalysis/new/internal/semantic
- security
- boostorg/asio
- stmts
- src
- Best Practices/Magic Constants
- Likely Bugs
- Leap Year
- Protocols
- Metrics/Internal
- Security/CWE
- CWE-190
- CWE-457
- CWE-570
- change-notes
- released
- experimental
- Likely Bugs
- Security/CWE
- CWE-1126
- CWE-125
- CWE-243
- CWE-416
- external
- jsf/4.10 Classes
- test/library-tests/ir/ir
- csharp
- documentation/library-coverage
- ql
- campaigns/Solorigate
- lib
- change-notes/released
- src
- change-notes/released
- consistency-queries
- lib
- change-notes
- released
- ext
- semmle/code/csharp
- commons
- controlflow
- internal
- dataflow
- internal
- dispatch
- security/dataflow
- serialization
- src
- Bad Practices
- Control-Flow
- Magic Constants
- Language Abuse
- Security Features/CWE-384
- Telemetry
- change-notes/released
- test/library-tests
- assignables
- controlflow/graph
- csharp8
- dataflow
- call-sensitivity
- library
- ssa
- goto
- docs/codeql/ql-language-reference
- go
- old-change-notes
- ql
- consistency-queries
- change-notes/released
- lib
- change-notes
- released
- ext
- semmle/go
- dataflow/internal
- frameworks
- security
- src
- InconsistentCode
- Security/CWE-327
- change-notes/released
- experimental/IntegerOverflow
- test
- library-tests/semmle/go/frameworks
- Beego
- Revel
- StdlibTaintFlow
- query-tests/Security/CWE-022
- javascript
- documentation
- downgrades/76a926a00d5f3bc199c203a1437796fd7b2835ba
- extractor/src/com/semmle/js/extractor
- ql
- lib
- change-notes/released
- semmle/javascript
- dataflow
- internal
- frameworks
- data/internal
- internal
- flow_summaries
- security
- dataflow
- upgrades/ccefb5e2d49318eea4aeafd4c6ae2af9f94ac72a
- src
- Declarations
- change-notes
- released
- experimental/Security/CWE-918
- test
- experimental
- FormParsers
- Security
- CWE-094-dataURL
- CWE-099
- EnvValueAndKeyInjection
- EnvValueInjection
- CWE-347
- localsource
- remotesource
- CWE-918
- CWE-942
- library-tests
- CallGraphs/FullTest
- DataFlow
- DefUse
- FlowSummary
- GlobalAccessPaths
- SSA
- GetRhsNode
- SSADefinition
- StringConcatenation
- TypeScript/RegressionTests
- EmptyName
- SemicolonInName
- frameworks
- Electron
- ReactJS
- koa
- query-tests/Security
- CWE-020/UntrustedDataToExternalAPI
- CWE-022
- TaintedPath
- ZipSlip
- CWE-073
- CWE-078
- CommandInjection
- IndirectCommandInjection
- SecondOrderCommandInjection
- UnsafeShellCommandConstruction
- CWE-079
- DomBasedXssWithResponseThreat
- DomBasedXss
- ExceptionXss
- ReflectedXss
- StoredXss
- UnsafeHtmlConstruction
- UnsafeJQueryPlugin
- XssThroughDom
- CWE-089
- local-threat-source
- typed
- untyped
- CWE-094
- CodeInjection
- UnsafeDynamicMethodAccess
- CWE-116/IncompleteSanitization
- CWE-117
- CWE-200
- CWE-312
- CWE-327
- CWE-338
- CWE-346
- CWE-377
- CWE-400
- ReDoS
- RemotePropertyInjection
- CWE-506
- CWE-522-DecompressionBombs
- CWE-601
- ClientSideUrlRedirect
- ServerSideUrlRedirect
- CWE-611
- CWE-643
- CWE-730
- Threat-models-disabled
- Threat-models-enabled
- CWE-754
- CWE-770/ResourceExhaustion
- CWE-776
- CWE-798
- CWE-807
- CWE-829
- CWE-843
- CWE-915
- PrototypePollutingAssignment
- PrototypePollutingFunction
- PrototypePollutingMergeCall
- CWE-918
- tutorials/Analyzing data flow in JavaScript/Local data flow
- resources
- java
- downgrades/9f6026c400996c13842974b24f076a486ad1f69c
- ql
- lib
- change-notes
- released
- config
- experimental/quantum
- semmle/code/java
- controlflow
- dataflow/internal
- rangeanalysis
- frameworks
- javaee/ejb
- security
- upgrades/1b8f5f4c747e4249f4731796ccaa0661c7434d8a
- src
- Likely Bugs
- Comparison
- Concurrency
- Termination
- Violations of Best Practice
- Magic Constants
- Naming Conventions
- change-notes
- released
- experimental/quantum
- Analysis
- Examples
- utils/flowtestcasegenerator
- test-kotlin1/library-tests
- java-kotlin-collection-type-generic-methods
- reflection
- test-kotlin2/library-tests
- java-kotlin-collection-type-generic-methods
- reflection
- test/library-tests
- compact-source-files
- flexible-constructors
- misc
- scripts
- suite-helpers
- change-notes/released
- python
- extractor/tsg-python
- ql
- lib
- analysis
- change-notes
- released
- experimental/cryptography
- modules
- stdlib
- semmle/python
- dataflow/new/internal
- frameworks
- data/internal
- objects
- types
- src
- Security/CWE-327
- change-notes
- released
- experimental/Security/CWE-022bis
- test/library-tests/dataflow
- global-flow
- typetracking
- ql/ql
- src/codeql_ql/style
- test/queries
- performance/VarUnusedInDisjunct
- style
- Misspelling
- UseInstanceofExtension
- UseSetLiteral
- ruby
- ql
- consistency-queries
- lib
- change-notes/released
- codeql/ruby
- controlflow
- internal
- dataflow/internal
- frameworks
- core
- data/internal
- http_clients
- regexp/internal
- security
- utils/test
- src
- change-notes/released
- experimental/insecure-randomness/examples
- queries/performance
- test
- library-tests
- controlflow/graph
- dataflow/barrier-guards
- query-tests
- experimental/InsecureRandomness
- security/cwe-915
- rust
- ast-generator/src
- downgrades/dfade44a27bd44db996ae8c5095a11effc883aba
- extractor/src
- generated
- translate
- ql
- lib
- change-notes
- released
- codeql/rust
- controlflow
- internal
- dataflow/internal
- elements
- internal
- generated
- internal
- upgrades/b41e55c0dba14a139d01dbee713aca5efe5b818a
- src
- change-notes
- released
- queries
- security/CWE-798
- telemetry
- test
- extractor-tests
- canonical_path_disabled
- generated
- AsmExpr
- Const
- Enum
- ExternBlock
- ExternCrate
- Function
- Impl
- MacroCall
- MacroDef
- MacroRules
- MethodCallExpr
- Module
- Path
- Static
- StructExpr
- StructPat
- Struct
- TraitAlias
- Trait
- TupleStructPat
- TypeAlias
- Union
- Use
- Variant
- library-tests
- dataflow
- global
- sources/CONSISTENCY
- strings
- path-resolution
- type-inference
- CONSISTENCY
- query-tests/security
- CWE-022
- CWE-117/CONSISTENCY
- CWE-312/CONSISTENCY
- CWE-770/CONSISTENCY
- CWE-825
- schema
- swift
- ql
- lib
- change-notes/released
- codeql/swift
- controlflow
- internal
- dataflow
- internal
- elements/decl/internal
- security
- src
- change-notes/released
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
761 files changed
+48224
-24585
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
20 | 20 | | |
21 | 21 | | |
22 | 22 | | |
23 | | - | |
| 23 | + | |
24 | 24 | | |
25 | 25 | | |
26 | 26 | | |
27 | 27 | | |
28 | 28 | | |
29 | 29 | | |
30 | 30 | | |
31 | | - | |
| 31 | + | |
32 | 32 | | |
33 | 33 | | |
34 | 34 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
17 | 17 | | |
18 | 18 | | |
19 | 19 | | |
20 | | - | |
| 20 | + | |
21 | 21 | | |
22 | 22 | | |
23 | 23 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
16 | 16 | | |
17 | 17 | | |
18 | 18 | | |
19 | | - | |
| 19 | + | |
20 | 20 | | |
21 | 21 | | |
22 | 22 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
17 | 17 | | |
18 | 18 | | |
19 | 19 | | |
20 | | - | |
| 20 | + | |
21 | 21 | | |
22 | 22 | | |
23 | 23 | | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
18 | 18 | | |
19 | 19 | | |
20 | 20 | | |
21 | | - | |
| 21 | + | |
22 | 22 | | |
23 | 23 | | |
24 | 24 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
19 | 19 | | |
20 | 20 | | |
21 | 21 | | |
22 | | - | |
| 22 | + | |
23 | 23 | | |
24 | 24 | | |
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
37 | 37 | | |
38 | 38 | | |
39 | 39 | | |
40 | | - | |
| 40 | + | |
41 | 41 | | |
42 | 42 | | |
43 | 43 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
22 | 22 | | |
23 | 23 | | |
24 | 24 | | |
25 | | - | |
| 25 | + | |
26 | 26 | | |
27 | 27 | | |
28 | 28 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
28 | 28 | | |
29 | 29 | | |
30 | 30 | | |
31 | | - | |
| 31 | + | |
32 | 32 | | |
33 | 33 | | |
34 | 34 | | |
| |||
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
39 | 39 | | |
40 | 40 | | |
41 | 41 | | |
42 | | - | |
| 42 | + | |
43 | 43 | | |
44 | 44 | | |
45 | 45 | | |
| |||
55 | 55 | | |
56 | 56 | | |
57 | 57 | | |
58 | | - | |
| 58 | + | |
59 | 59 | | |
60 | 60 | | |
61 | 61 | | |
| |||
0 commit comments