mirror of
https://github.com/github/codeql.git
synced 2025-12-16 16:53:25 +01:00
Remove template text
This commit is contained in:
@@ -1,11 +1,5 @@
|
||||
# Improvements to C# analysis
|
||||
|
||||
> NOTES
|
||||
>
|
||||
> Please describe your changes in terms that are suitable for
|
||||
> customers to read. These notes will have only minor tidying up
|
||||
> before they are published as part of the release notes.
|
||||
|
||||
## General improvements
|
||||
|
||||
* Control flow analysis has been improved for `catch` clauses with filters.
|
||||
@@ -14,7 +8,7 @@
|
||||
|
||||
| **Query** | **Tags** | **Purpose** |
|
||||
|-----------------------------|-----------|--------------------------------------------------------------------|
|
||||
| Arbitrary file write during zip extraction ("Zip Slip") (`cs/zipslip`) | security, external/cwe/cwe-022 | Identifies zip extraction routines which allow arbitrary file overwrite vulnerabilities.
|
||||
| Arbitrary file write during zip extraction ("Zip Slip") (`cs/zipslip`) | security, external/cwe/cwe-022 | Identifies zip extraction routines which allow arbitrary file overwrite vulnerabilities. |
|
||||
| Local scope variable shadows member (`cs/local-shadows-member`) | maintainability, readability | Replaces the existing queries Local variable shadows class member (`cs/local-shadows-class-member`), Local variable shadows struct member (`cs/local-shadows-struct-member`), Parameter shadows class member (`cs/parameter-shadows-class-member`), and Parameter shadows struct member (`cs/parameter-shadows-struct-member`). |
|
||||
|
||||
## Changes to existing queries
|
||||
@@ -40,8 +34,6 @@
|
||||
* The `when` part of constant cases is now extracted.
|
||||
* Fixed a bug where `while(x is T y) ...` was not extracted correctly.
|
||||
|
||||
* *Series of bullet points*
|
||||
|
||||
## Changes to QL libraries
|
||||
|
||||
* A new non-member predicate `mayBeDisposed()` can be used to determine if a variable is potentially disposed inside a library. It will analyse the CIL code in the library to determine this.
|
||||
|
||||
Reference in New Issue
Block a user