Release preparation for version 2.17.5

This commit is contained in:
github-actions[bot]
2024-06-10 13:40:39 +00:00
parent 7ecf1f9010
commit 877bfa2468
147 changed files with 359 additions and 107 deletions

View File

@@ -1,3 +1,13 @@
## 1.1.0
### New Features
* Data models can now be added with data extensions. In this way source, sink and summary models can be added in extension `.model.yml` files, rather than by writing classes in QL code. New models should be added in the `lib/ext` folder.
### Minor Analysis Improvements
* A partial model for the `Boost.Asio` network library has been added. This includes sources, sinks and summaries for certain functions in `Boost.Asio`, such as `read_until` and `write`.
## 1.0.0
### Breaking Changes

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* A partial model for the `Boost.Asio` network library has been added. This includes sources, sinks and summaries for certain functions in `Boost.Asio`, such as `read_until` and `write`.

View File

@@ -1,4 +0,0 @@
---
category: feature
---
* Data models can now be added with data extensions. In this way source, sink and summary models can be added in extension `.model.yml` files, rather than by writing classes in QL code. New models should be added in the `lib/ext` folder.

View File

@@ -0,0 +1,9 @@
## 1.1.0
### New Features
* Data models can now be added with data extensions. In this way source, sink and summary models can be added in extension `.model.yml` files, rather than by writing classes in QL code. New models should be added in the `lib/ext` folder.
### Minor Analysis Improvements
* A partial model for the `Boost.Asio` network library has been added. This includes sources, sinks and summaries for certain functions in `Boost.Asio`, such as `read_until` and `write`.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.1.0

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-all
version: 1.0.1-dev
version: 1.1.0
groups: cpp
dbscheme: semmlecode.cpp.dbscheme
extractor: cpp

View File

@@ -1,3 +1,9 @@
## 1.0.1
### Minor Analysis Improvements
* The `cpp/dangerous-function-overflow` no longer produces a false positive alert when the `gets` function does not have exactly one parameter.
## 1.0.0
### Breaking Changes

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 1.0.1
### Minor Analysis Improvements
* The `cpp/dangerous-function-overflow` no longer produces a false positive alert when the `gets` function does not have exactly one parameter.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- cpp
- queries

View File

@@ -1,3 +1,7 @@
## 1.7.18
No user-facing changes.
## 1.7.17
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.7.18
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.7.17
lastReleaseVersion: 1.7.18

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-all
version: 1.7.18-dev
version: 1.7.18
groups:
- csharp
- solorigate

View File

@@ -1,3 +1,7 @@
## 1.7.18
No user-facing changes.
## 1.7.17
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.7.18
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.7.17
lastReleaseVersion: 1.7.18

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-queries
version: 1.7.18-dev
version: 1.7.18
groups:
- csharp
- solorigate

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-all
version: 1.0.1-dev
version: 1.0.1
groups: csharp
dbscheme: semmlecode.csharp.dbscheme
extractor: csharp

View File

@@ -1,3 +1,9 @@
## 1.0.1
### Minor Analysis Improvements
* .NET 8 Runtime models have been updated based on the newest version of the model generator. Furthermore, the database sources have been changed slightly to reduce result multiplicity.
## 1.0.0
### Breaking Changes

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 1.0.1
### Minor Analysis Improvements
* .NET 8 Runtime models have been updated based on the newest version of the model generator. Furthermore, the database sources have been changed slightly to reduce result multiplicity.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- csharp
- queries

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql-go-consistency-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- go
- queries

View File

@@ -1,3 +1,10 @@
## 1.1.0
### New Features
* When writing models-as-data models, the receiver is now referred to as `Argument[receiver]` rather than `Argument[-1]`.
* Neutral models are now supported. They have no effect except that a manual neutral summary model will stop a generated summary model from having any effect.
## 1.0.0
### Breaking Changes

View File

@@ -1,5 +1,6 @@
---
category: feature
---
## 1.1.0
### New Features
* When writing models-as-data models, the receiver is now referred to as `Argument[receiver]` rather than `Argument[-1]`.
* Neutral models are now supported. They have no effect except that a manual neutral summary model will stop a generated summary model from having any effect.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.1.0

View File

@@ -1,5 +1,5 @@
name: codeql/go-all
version: 1.0.1-dev
version: 1.1.0
groups: go
dbscheme: go.dbscheme
extractor: go

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/go-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- go
- queries

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/java-automodel-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- java
- automodel

View File

@@ -1,3 +1,13 @@
## 1.1.0
### Major Analysis Improvements
* The precision of virtual dispatch has been improved. This increases precision in general for all data flow queries.
### Minor Analysis Improvements
* Support for Eclipse Compiler for Java (ecj) has been fixed to work with (a) runs that don't pass `-noExit` and (b) runs that use post-Java-9 command-line arguments.
## 1.0.0
### Breaking Changes

View File

@@ -1,4 +0,0 @@
---
category: majorAnalysis
---
* The precision of virtual dispatch has been improved. This increases precision in general for all data flow queries.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Support for Eclipse Compiler for Java (ecj) has been fixed to work with (a) runs that don't pass `-noExit` and (b) runs that use post-Java-9 command-line arguments.

View File

@@ -0,0 +1,9 @@
## 1.1.0
### Major Analysis Improvements
* The precision of virtual dispatch has been improved. This increases precision in general for all data flow queries.
### Minor Analysis Improvements
* Support for Eclipse Compiler for Java (ecj) has been fixed to work with (a) runs that don't pass `-noExit` and (b) runs that use post-Java-9 command-line arguments.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.1.0

View File

@@ -1,5 +1,5 @@
name: codeql/java-all
version: 1.0.1-dev
version: 1.1.0
groups: java
dbscheme: config/semmlecode.dbscheme
extractor: java

View File

@@ -1,3 +1,10 @@
## 1.0.1
### Minor Analysis Improvements
* The query `java/spring-disabled-csrf-protection` detects disabling CSRF via `ServerHttpSecurity$CsrfSpec::disable`.
* Added more `java.io.File`-related sinks to the path injection query.
## 1.0.0
### Breaking Changes

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Added more `java.io.File`-related sinks to the path injection query.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* The query `java/spring-disabled-csrf-protection` detects disabling CSRF via `ServerHttpSecurity$CsrfSpec::disable`.

View File

@@ -0,0 +1,6 @@
## 1.0.1
### Minor Analysis Improvements
* The query `java/spring-disabled-csrf-protection` detects disabling CSRF via `ServerHttpSecurity$CsrfSpec::disable`.
* Added more `java.io.File`-related sinks to the path injection query.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/java-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- java
- queries

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-all
version: 1.0.1-dev
version: 1.0.1
groups: javascript
dbscheme: semmlecode.javascript.dbscheme
extractor: javascript

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- javascript
- queries

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,4 +1,4 @@
name: codeql/suite-helpers
version: 1.0.1-dev
version: 1.0.1
groups: shared
warnOnImplicitThis: true

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/python-all
version: 1.0.1-dev
version: 1.0.1
groups: python
dbscheme: semmlecode.python.dbscheme
extractor: python

View File

@@ -1,3 +1,9 @@
## 1.0.1
### Minor Analysis Improvements
* Added models for `opml` library.
## 1.0.0
### Breaking Changes

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Added models for `opml` library.

View File

@@ -0,0 +1,5 @@
## 1.0.1
### Minor Analysis Improvements
* Added models for `opml` library.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/python-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- python
- queries

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-all
version: 1.0.1-dev
version: 1.0.1
groups: ruby
extractor: ruby
dbscheme: ruby.dbscheme

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-queries
version: 1.0.1-dev
version: 1.0.1
groups:
- ruby
- queries

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/controlflow
version: 1.0.1-dev
version: 1.0.1
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/dataflow
version: 1.0.1-dev
version: 1.0.1
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/mad
version: 1.0.1-dev
version: 1.0.1
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 1.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.0
lastReleaseVersion: 1.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/rangeanalysis
version: 1.0.1-dev
version: 1.0.1
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 1.0.1
No user-facing changes.
## 1.0.0
### Breaking Changes

Some files were not shown because too many files have changed in this diff Show More