Release preparation for version 2.14.3

This commit is contained in:
github-actions[bot]
2023-08-18 14:48:15 +00:00
parent a002f59f58
commit 098dfb4242
129 changed files with 323 additions and 122 deletions

View File

@@ -1,3 +1,7 @@
## 0.9.1
No user-facing changes.
## 0.9.0 ## 0.9.0
### Breaking Changes ### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 0.9.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.9.0 lastReleaseVersion: 0.9.1

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-all name: codeql/cpp-all
version: 0.9.1-dev version: 0.9.1
groups: cpp groups: cpp
dbscheme: semmlecode.cpp.dbscheme dbscheme: semmlecode.cpp.dbscheme
extractor: cpp extractor: cpp

View File

@@ -1,3 +1,7 @@
## 0.7.3
No user-facing changes.
## 0.7.2 ## 0.7.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.7.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-queries name: codeql/cpp-queries
version: 0.7.3-dev version: 0.7.3
groups: groups:
- cpp - cpp
- queries - queries

View File

@@ -1,3 +1,7 @@
## 1.6.3
No user-facing changes.
## 1.6.2 ## 1.6.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.6.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 1.6.2 lastReleaseVersion: 1.6.3

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-all name: codeql/csharp-solorigate-all
version: 1.6.3-dev version: 1.6.3
groups: groups:
- csharp - csharp
- solorigate - solorigate

View File

@@ -1,3 +1,7 @@
## 1.6.3
No user-facing changes.
## 1.6.2 ## 1.6.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.6.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 1.6.2 lastReleaseVersion: 1.6.3

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-queries name: codeql/csharp-solorigate-queries
version: 1.6.3-dev version: 1.6.3
groups: groups:
- csharp - csharp
- solorigate - solorigate

View File

@@ -1,3 +1,9 @@
## 0.7.3
### Minor Analysis Improvements
* The query library for `cs/hardcoded-credentials` now excludes benign properties such as `UserNameClaimType` and `AllowedUserNameCharacters` from `Microsoft.AspNetCore.Identity` options classes.
## 0.7.2 ## 0.7.2
No user-facing changes. No user-facing changes.

View File

@@ -1,4 +1,5 @@
--- ## 0.7.3
category: minorAnalysis
--- ### Minor Analysis Improvements
* The query library for `cs/hardcoded-credentials` now excludes benign properties such as `UserNameClaimType` and `AllowedUserNameCharacters` from `Microsoft.AspNetCore.Identity` options classes.
* The query library for `cs/hardcoded-credentials` now excludes benign properties such as `UserNameClaimType` and `AllowedUserNameCharacters` from `Microsoft.AspNetCore.Identity` options classes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-all name: codeql/csharp-all
version: 0.7.3-dev version: 0.7.3
groups: csharp groups: csharp
dbscheme: semmlecode.csharp.dbscheme dbscheme: semmlecode.csharp.dbscheme
extractor: csharp extractor: csharp

View File

@@ -1,3 +1,7 @@
## 0.7.3
No user-facing changes.
## 0.7.2 ## 0.7.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.7.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-queries name: codeql/csharp-queries
version: 0.7.3-dev version: 0.7.3
groups: groups:
- csharp - csharp
- queries - queries

View File

@@ -1,3 +1,7 @@
## 0.6.3
No user-facing changes.
## 0.6.2 ## 0.6.2
### Minor Analysis Improvements ### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.6.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.6.2 lastReleaseVersion: 0.6.3

View File

@@ -1,5 +1,5 @@
name: codeql/go-all name: codeql/go-all
version: 0.6.3-dev version: 0.6.3
groups: go groups: go
dbscheme: go.dbscheme dbscheme: go.dbscheme
extractor: go extractor: go

View File

@@ -1,3 +1,7 @@
## 0.6.3
No user-facing changes.
## 0.6.2 ## 0.6.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.6.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.6.2 lastReleaseVersion: 0.6.3

View File

@@ -1,5 +1,5 @@
name: codeql/go-queries name: codeql/go-queries
version: 0.6.3-dev version: 0.6.3
groups: groups:
- go - go
- queries - queries

View File

@@ -1,3 +1,14 @@
## 0.7.3
### Major Analysis Improvements
* Improved support for flow through captured variables that properly adheres to inter-procedural control flow.
### Minor Analysis Improvements
* Modified the `getSecureAlgorithmName` predicate in `Encryption.qll` to also include `SHA-256` and `SHA-512`. Previously only the versions of the names without dashes were considered secure.
* Add support for `WithElement` and `WithoutElement` for MaD access paths.
## 0.7.2 ## 0.7.2
### New Features ### New Features

View File

@@ -1,4 +0,0 @@
---
category: majorAnalysis
---
* Improved support for flow through captured variables that properly adheres to inter-procedural control flow.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Add support for `WithElement` and `WithoutElement` for MaD access paths.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Modified the `getSecureAlgorithmName` predicate in `Encryption.qll` to also include `SHA-256` and `SHA-512`. Previously only the versions of the names without dashes were considered secure.

View File

@@ -0,0 +1,10 @@
## 0.7.3
### Major Analysis Improvements
* Improved support for flow through captured variables that properly adheres to inter-procedural control flow.
### Minor Analysis Improvements
* Modified the `getSecureAlgorithmName` predicate in `Encryption.qll` to also include `SHA-256` and `SHA-512`. Previously only the versions of the names without dashes were considered secure.
* Add support for `WithElement` and `WithoutElement` for MaD access paths.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/java-all name: codeql/java-all
version: 0.7.3-dev version: 0.7.3
groups: java groups: java
dbscheme: config/semmlecode.dbscheme dbscheme: config/semmlecode.dbscheme
extractor: java extractor: java

View File

@@ -1,3 +1,7 @@
## 0.7.3
No user-facing changes.
## 0.7.2 ## 0.7.2
### Minor Analysis Improvements ### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.7.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/java-queries name: codeql/java-queries
version: 0.7.3-dev version: 0.7.3
groups: groups:
- java - java
- queries - queries

View File

@@ -1,3 +1,7 @@
## 0.7.3
No user-facing changes.
## 0.7.2 ## 0.7.2
### Minor Analysis Improvements ### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.7.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-all name: codeql/javascript-all
version: 0.7.3-dev version: 0.7.3
groups: javascript groups: javascript
dbscheme: semmlecode.javascript.dbscheme dbscheme: semmlecode.javascript.dbscheme
extractor: javascript extractor: javascript

View File

@@ -1,3 +1,7 @@
## 0.7.3
No user-facing changes.
## 0.7.2 ## 0.7.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.7.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-queries name: codeql/javascript-queries
version: 0.7.3-dev version: 0.7.3
groups: groups:
- javascript - javascript
- queries - queries

View File

@@ -1,3 +1,7 @@
## 0.6.3
No user-facing changes.
## 0.6.2 ## 0.6.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.6.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.6.2 lastReleaseVersion: 0.6.3

View File

@@ -1,4 +1,4 @@
name: codeql/suite-helpers name: codeql/suite-helpers
version: 0.6.3-dev version: 0.6.3
groups: shared groups: shared
warnOnImplicitThis: true warnOnImplicitThis: true

View File

@@ -1,3 +1,15 @@
## 0.10.3
### Minor Analysis Improvements
* Support analyzing packages (folders with python code) that do not have `__init__.py` files, although this is technically required, we see real world projects that don't have this.
* Added modeling of AWS Lambda handlers that can be identified with `AWS::Serverless::Function` in YAML files, where the event parameter is modeled as a remote-flow-source.
* Improvements of the `aiohttp` models including remote-flow-sources from type annotations, new path manipulation, and SSRF sinks.
### Bug Fixes
* Fixed the computation of locations for imports with aliases in jump-to-definition.
## 0.10.2 ## 0.10.2
No user-facing changes. No user-facing changes.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Improvements of the `aiohttp` models including remote-flow-sources from type annotations, new path manipulation, and SSRF sinks.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Added modeling of AWS Lambda handlers that can be identified with `AWS::Serverless::Function` in YAML files, where the event parameter is modeled as a remote-flow-source.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Support analyzing packages (folders with python code) that do not have `__init__.py` files, although this is technically required, we see real world projects that don't have this.

View File

@@ -1,4 +0,0 @@
---
category: fix
---
* Fixed the computation of locations for imports with aliases in jump-to-definition.

View File

@@ -0,0 +1,11 @@
## 0.10.3
### Minor Analysis Improvements
* Support analyzing packages (folders with python code) that do not have `__init__.py` files, although this is technically required, we see real world projects that don't have this.
* Added modeling of AWS Lambda handlers that can be identified with `AWS::Serverless::Function` in YAML files, where the event parameter is modeled as a remote-flow-source.
* Improvements of the `aiohttp` models including remote-flow-sources from type annotations, new path manipulation, and SSRF sinks.
### Bug Fixes
* Fixed the computation of locations for imports with aliases in jump-to-definition.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.10.2 lastReleaseVersion: 0.10.3

View File

@@ -1,5 +1,5 @@
name: codeql/python-all name: codeql/python-all
version: 0.10.3-dev version: 0.10.3
groups: python groups: python
dbscheme: semmlecode.python.dbscheme dbscheme: semmlecode.python.dbscheme
extractor: python extractor: python

View File

@@ -1,3 +1,7 @@
## 0.8.3
No user-facing changes.
## 0.8.2 ## 0.8.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.8.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.8.2 lastReleaseVersion: 0.8.3

View File

@@ -1,5 +1,5 @@
name: codeql/python-queries name: codeql/python-queries
version: 0.8.3-dev version: 0.8.3
groups: groups:
- python - python
- queries - queries

View File

@@ -1,3 +1,10 @@
## 0.7.3
### Minor Analysis Improvements
* Flow between positional arguments and splat parameters (`*args`) is now tracked more precisely.
* Flow between splat arguments (`*args`) and positional parameters is now tracked more precisely.
## 0.7.2 ## 0.7.2
No user-facing changes. No user-facing changes.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Flow between splat arguments (`*args`) and positional parameters is now tracked more precisely.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Flow between positional arguments and splat parameters (`*args`) is now tracked more precisely.

View File

@@ -0,0 +1,6 @@
## 0.7.3
### Minor Analysis Improvements
* Flow between positional arguments and splat parameters (`*args`) is now tracked more precisely.
* Flow between splat arguments (`*args`) and positional parameters is now tracked more precisely.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-all name: codeql/ruby-all
version: 0.7.3-dev version: 0.7.3
groups: ruby groups: ruby
extractor: ruby extractor: ruby
dbscheme: ruby.dbscheme dbscheme: ruby.dbscheme

View File

@@ -1,3 +1,7 @@
## 0.7.3
No user-facing changes.
## 0.7.2 ## 0.7.2
### New Queries ### New Queries

View File

@@ -0,0 +1,3 @@
## 0.7.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.7.2 lastReleaseVersion: 0.7.3

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-queries name: codeql/ruby-queries
version: 0.7.3-dev version: 0.7.3
groups: groups:
- ruby - ruby
- queries - queries

View File

@@ -1,3 +1,7 @@
## 0.0.2
No user-facing changes.
## 0.0.1 ## 0.0.1
### Major Analysis Improvements ### Major Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.0.2
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.0.1 lastReleaseVersion: 0.0.2

View File

@@ -1,5 +1,5 @@
name: codeql/controlflow name: codeql/controlflow
version: 0.0.2-dev version: 0.0.2
groups: shared groups: shared
library: true library: true
dependencies: dependencies:

View File

@@ -1,3 +1,9 @@
## 0.0.2
### Major Analysis Improvements
* Initial release. Adds a library to implement flow through captured variables that properly adheres to inter-procedural control flow.
## 0.0.1 ## 0.0.1
### New Features ### New Features

View File

@@ -1,4 +1,5 @@
--- ## 0.0.2
category: majorAnalysis
--- ### Major Analysis Improvements
* Initial release. Adds a library to implement flow through captured variables that properly adheres to inter-procedural control flow. * Initial release. Adds a library to implement flow through captured variables that properly adheres to inter-procedural control flow.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.0.1 lastReleaseVersion: 0.0.2

View File

@@ -1,5 +1,5 @@
name: codeql/dataflow name: codeql/dataflow
version: 0.0.2-dev version: 0.0.2
groups: shared groups: shared
library: true library: true
dependencies: dependencies:

View File

@@ -1,3 +1,7 @@
## 0.1.3
No user-facing changes.
## 0.1.2 ## 0.1.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.1.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.1.2 lastReleaseVersion: 0.1.3

View File

@@ -1,5 +1,5 @@
name: codeql/mad name: codeql/mad
version: 0.1.3-dev version: 0.1.3
groups: shared groups: shared
library: true library: true
dependencies: dependencies:

View File

@@ -1,3 +1,7 @@
## 0.1.3
No user-facing changes.
## 0.1.2 ## 0.1.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.1.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.1.2 lastReleaseVersion: 0.1.3

View File

@@ -1,5 +1,5 @@
name: codeql/regex name: codeql/regex
version: 0.1.3-dev version: 0.1.3
groups: shared groups: shared
library: true library: true
dependencies: dependencies:

View File

@@ -1,3 +1,7 @@
## 0.1.3
No user-facing changes.
## 0.1.2 ## 0.1.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.1.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.1.2 lastReleaseVersion: 0.1.3

View File

@@ -1,5 +1,5 @@
name: codeql/ssa name: codeql/ssa
version: 0.1.3-dev version: 0.1.3
groups: shared groups: shared
library: true library: true
warnOnImplicitThis: true warnOnImplicitThis: true

View File

@@ -1,3 +1,7 @@
## 0.1.3
No user-facing changes.
## 0.1.2 ## 0.1.2
No user-facing changes. No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.1.3
No user-facing changes.

View File

@@ -1,2 +1,2 @@
--- ---
lastReleaseVersion: 0.1.2 lastReleaseVersion: 0.1.3

Some files were not shown because too many files have changed in this diff Show More