Pull requests: github/codeql
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Kotlin: drop same-file requirement for overridden parameter labels
Java
Kotlin
#11090
opened Nov 2, 2022 by
smowton
Loading…
Swift: Add new query for XML External Entities (XML) vulnerabilities
documentation
Swift
#11086
opened Nov 2, 2022 by
atorralba
Loading…
Swift: detect the use of static initialization vectors
documentation
Swift
#11084
opened Nov 2, 2022 by
karimhamdanali
Loading…
JS: treat arrays that gets executed with shell:true as a sink for
js/shell-command-constructed-from-input
JS
#11082
opened Nov 2, 2022 by
erik-krogh
Loading…
add workflow that checks compilation of all queries with the latest stable release
Go
Swift
#11078
opened Nov 2, 2022 by
erik-krogh
•
Draft
Revert "Use 'gh codeql' with the nightly release for CI jobs"
#11076
opened Nov 2, 2022 by
hvitved
Loading…
Add documentation about the
codeQL.queryHistory.ttl setting
documentation
#11073
opened Nov 1, 2022 by
aeisenberg
Loading…
JS: poly-redos: don't sanitize calls through substring calls that just remove the start
JS
no-change-note-required
This PR does not need a change note
#11072
opened Nov 1, 2022 by
erik-krogh
Loading…
ReDoS: fix canonicalization in NfaUtils
Java
JS
no-change-note-required
This PR does not need a change note
Python
Ruby
#11071
opened Nov 1, 2022 by
erik-krogh
Loading…
Swift: detect the use of constant passwords for password-based encryption
documentation
Swift
#11063
opened Nov 1, 2022 by
karimhamdanali
Loading…
ReDoS: add a shared regex pack
documentation
Java
JS
Python
Ruby
#11061
opened Nov 1, 2022 by
erik-krogh
Loading…
2 tasks
Data flow: Restrict public This PR should only be merged in sync with an internal Semmle PR
Java
no-change-note-required
This PR does not need a change note
Python
Ruby
Swift
PathNodes to those that may reach a sink
C#
C++
DataFlow Library
depends on internal PR
#11060
opened Nov 1, 2022 by
hvitved
Loading…
Ruby: add an AST reference guide
documentation
ready-for-doc-review
This PR requires and is ready for review from the GitHub docs team.
Ruby GA
#11056
opened Oct 31, 2022 by
alexrford
Loading…
Previous Next
ProTip!
Filter pull requests by the default branch with base:main.