Merge pull request #622 from github/post-release/v2.7.3

Post release/v2.7.3
This commit is contained in:
Andrew Eisenberg
2021-12-10 10:00:11 -08:00
committed by GitHub
19 changed files with 174 additions and 9 deletions

View File

@@ -0,0 +1,27 @@
- description: Selectors for selecting the Code-Scanning-relevant queries for a language
- include:
kind:
- problem
- path-problem
- alert
- path-alert
precision:
- high
- very-high
problem.severity:
- error
- warning
tags contain:
- security
- include:
kind:
- diagnostic
- include:
kind:
- metric
tags contain:
- summary
- exclude:
deprecated: //
- exclude:
query path: /^experimental\/.*/

View File

@@ -0,0 +1,12 @@
- description: Selectors for excluding queries that LGTM doesn't display by default
- exclude:
kind:
- problem
- path-problem
precision: medium
- exclude:
kind:
- problem
- path-problem
precision: high
problem.severity: recommendation

View File

@@ -0,0 +1,25 @@
- description: Selectors for selecting the LGTM-relevant queries for a language
- include:
kind:
- problem
- path-problem
precision:
- high
- very-high
- include:
kind:
- problem
- path-problem
precision: medium
problem.severity:
- error
- warning
- include:
kind:
- definitions
- alert-suppression
- file-classifier
- exclude:
deprecated: //
- exclude:
query path: /^experimental\/.*/

View File

@@ -0,0 +1,3 @@
name: codeql/suite-helpers
version: 0.0.2
library: true

View File

@@ -0,0 +1,29 @@
- description: Selectors for selecting the security-and-quality queries for a language
- include:
kind:
- problem
- path-problem
precision:
- high
- very-high
- include:
kind:
- problem
- path-problem
precision: medium
problem.severity:
- error
- warning
- include:
kind:
- diagnostic
- include:
kind:
- metric
tags contain:
- summary
- exclude:
deprecated: //
- exclude:
query path: /^experimental\/.*/

View File

@@ -0,0 +1,34 @@
- description: Selectors for selecting the security-extended queries for a language
- include:
kind:
- problem
- path-problem
precision:
- high
- very-high
tags contain:
- security
- include:
kind:
- problem
- path-problem
precision:
- medium
problem.severity:
- error
- warning
tags contain:
- security
- include:
kind:
- diagnostic
- include:
kind:
- metric
tags contain:
- summary
- exclude:
deprecated: //
- exclude:
query path: /^experimental\/.*/

1
ql/lib/CHANGELOG.md Normal file
View File

@@ -0,0 +1 @@
## 0.0.3

View File

@@ -0,0 +1 @@
## 0.0.3

View File

@@ -0,0 +1,2 @@
---
lastReleaseVersion: 0.0.3

View File

@@ -1,7 +1,8 @@
name: codeql/go-all
version: 0.0.2
version: 0.0.4-dev
groups: go
dbscheme: go.dbscheme
extractor: go
library: true
dependencies:
codeql/go-upgrades: ^0.0.2
codeql/go-upgrades: ~0.0.3

11
ql/src/CHANGELOG.md Normal file
View File

@@ -0,0 +1,11 @@
## 0.0.3
### New Queries
* A new query "Log entries created from user input" (`go/log-injection`) has been added. The query reports user-provided data reaching calls to logging methods.
### Major Analysis Improvements
* The query "Incorrect conversion between integer types" has been improved to
treat `math.MaxUint` and `math.MaxInt` as the values they would be on a
32-bit architecture. This should lead to fewer false positive results.

View File

@@ -0,0 +1,11 @@
## 0.0.3
### New Queries
* A new query "Log entries created from user input" (`go/log-injection`) has been added. The query reports user-provided data reaching calls to logging methods.
### Major Analysis Improvements
* The query "Incorrect conversion between integer types" has been improved to
treat `math.MaxUint` and `math.MaxInt` as the values they would be on a
32-bit architecture. This should lead to fewer false positive results.

View File

@@ -0,0 +1,2 @@
---
lastReleaseVersion: 0.0.3

View File

@@ -1,8 +1,9 @@
name: codeql/go-queries
version: 0.0.2
version: 0.0.4-dev
groups: go
suites: codeql-suites
extractor: go
defaultSuiteFile: codeql-suites/go-code-scanning.qls
dependencies:
codeql/go-all: "*"
codeql/suite-helpers: "*"
codeql/suite-helpers: ~0.0.2

View File

@@ -1,7 +1,7 @@
name: codeql/go-tests
version: 0.0.2
groups: [go,test]
dependencies:
codeql/go-queries: ^0.0.2
codeql/go-all: ^0.0.2
codeql/go-examples: ^0.0.2
codeql/go-queries: "*"
codeql/go-all: "*"
codeql/go-examples: "*"
extractor: go

1
upgrades/CHANGELOG.md Normal file
View File

@@ -0,0 +1 @@
## 0.0.3

View File

@@ -0,0 +1 @@
## 0.0.3

View File

@@ -0,0 +1,2 @@
---
lastReleaseVersion: 0.0.3

View File

@@ -1,4 +1,5 @@
name: codeql/go-upgrades
version: 0.0.2
version: 0.0.4-dev
groups: go
upgrades: .
library: true