Merge pull request #16489 from github/release-prep/2.17.3

Release preparation for version 2.17.3
This commit is contained in:
Dave Bartolomeo
2024-05-14 15:43:46 -04:00
committed by GitHub
144 changed files with 338 additions and 96 deletions

View File

@@ -1,3 +1,7 @@
## 0.13.1
No user-facing changes.
## 0.13.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 0.13.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.13.0
lastReleaseVersion: 0.13.1

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-all
version: 0.13.1-dev
version: 0.13.1
groups: cpp
dbscheme: semmlecode.cpp.dbscheme
extractor: cpp

View File

@@ -1,3 +1,9 @@
## 0.9.12
### New Queries
* Added a new query, `cpp/iterator-to-expired-container`, to detect the creation of iterators owned by a temporary objects that are about to be destroyed.
## 0.9.11
### Minor Analysis Improvements

View File

@@ -1,4 +1,5 @@
---
category: newQuery
---
## 0.9.12
### New Queries
* Added a new query, `cpp/iterator-to-expired-container`, to detect the creation of iterators owned by a temporary objects that are about to be destroyed.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.9.11
lastReleaseVersion: 0.9.12

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-queries
version: 0.9.12-dev
version: 0.9.12
groups:
- cpp
- queries

View File

@@ -1,3 +1,7 @@
## 1.7.16
No user-facing changes.
## 1.7.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.7.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.7.15
lastReleaseVersion: 1.7.16

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-all
version: 1.7.16-dev
version: 1.7.16
groups:
- csharp
- solorigate

View File

@@ -1,3 +1,7 @@
## 1.7.16
No user-facing changes.
## 1.7.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.7.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.7.15
lastReleaseVersion: 1.7.16

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-queries
version: 1.7.16-dev
version: 1.7.16
groups:
- csharp
- solorigate

View File

@@ -1,3 +1,7 @@
## 0.10.1
No user-facing changes.
## 0.10.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 0.10.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.10.0
lastReleaseVersion: 0.10.1

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-all
version: 0.10.1-dev
version: 0.10.1
groups: csharp
dbscheme: semmlecode.csharp.dbscheme
extractor: csharp

View File

@@ -1,3 +1,7 @@
## 0.8.16
No user-facing changes.
## 0.8.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.8.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.15
lastReleaseVersion: 0.8.16

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-queries
version: 0.8.16-dev
version: 0.8.16
groups:
- csharp
- queries

View File

@@ -1,3 +1,7 @@
## 0.0.15
No user-facing changes.
## 0.0.14
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.0.15
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.0.14
lastReleaseVersion: 0.0.15

View File

@@ -1,5 +1,5 @@
name: codeql-go-consistency-queries
version: 0.0.15-dev
version: 0.0.15
groups:
- go
- queries

View File

@@ -1,3 +1,11 @@
## 0.8.1
### Minor Analysis Improvements
* Fixed a bug that stopped built-in functions from being referenced using the predicate `hasQualifiedName` because technically they do not belong to any package. Now you can use the empty string as the package, e.g. `f.hasQualifiedName("", "len")`.
* Fixed a bug that stopped data flow models for built-in functions from having any effect because the package "" was not parsed correctly.
* Fixed a bug that stopped data flow from being followed through variadic arguments to built-in functions or to functions called using a variable.
## 0.8.0
### Breaking Changes

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Fixed a bug that stopped data flow from being followed through variadic arguments to built-in functions or to functions called using a variable.

View File

@@ -1,5 +1,7 @@
---
category: minorAnalysis
---
## 0.8.1
### Minor Analysis Improvements
* Fixed a bug that stopped built-in functions from being referenced using the predicate `hasQualifiedName` because technically they do not belong to any package. Now you can use the empty string as the package, e.g. `f.hasQualifiedName("", "len")`.
* Fixed a bug that stopped data flow models for built-in functions from having any effect because the package "" was not parsed correctly.
* Fixed a bug that stopped data flow from being followed through variadic arguments to built-in functions or to functions called using a variable.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.0
lastReleaseVersion: 0.8.1

View File

@@ -1,5 +1,5 @@
name: codeql/go-all
version: 0.8.1-dev
version: 0.8.1
groups: go
dbscheme: go.dbscheme
extractor: go

View File

@@ -1,3 +1,7 @@
## 0.7.16
No user-facing changes.
## 0.7.15
### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.7.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.7.15
lastReleaseVersion: 0.7.16

View File

@@ -1,5 +1,5 @@
name: codeql/go-queries
version: 0.7.16-dev
version: 0.7.16
groups:
- go
- queries

View File

@@ -1,3 +1,7 @@
## 0.0.23
No user-facing changes.
## 0.0.22
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.0.23
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.0.22
lastReleaseVersion: 0.0.23

View File

@@ -1,5 +1,5 @@
name: codeql/java-automodel-queries
version: 0.0.23-dev
version: 0.0.23
groups:
- java
- automodel

View File

@@ -1,3 +1,10 @@
## 0.11.0
### Breaking Changes
* The Java extractor no longer supports the `ODASA_JAVA_LAYOUT`, `ODASA_TOOLS` and `ODASA_HOME` legacy environment variables.
* The Java extractor no longer supports the `ODASA_BUILD_ERROR_DIR` legacy environment variable.
## 0.10.0
### Breaking Changes

View File

@@ -1,4 +0,0 @@
---
category: breaking
---
* The Java extractor no longer supports the `ODASA_BUILD_ERROR_DIR` legacy environment variable.

View File

@@ -1,4 +0,0 @@
---
category: breaking
---
* The Java extractor no longer supports the `ODASA_JAVA_LAYOUT`, `ODASA_TOOLS` and `ODASA_HOME` legacy environment variables.

View File

@@ -0,0 +1,6 @@
## 0.11.0
### Breaking Changes
* The Java extractor no longer supports the `ODASA_JAVA_LAYOUT`, `ODASA_TOOLS` and `ODASA_HOME` legacy environment variables.
* The Java extractor no longer supports the `ODASA_BUILD_ERROR_DIR` legacy environment variable.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.10.0
lastReleaseVersion: 0.11.0

View File

@@ -1,5 +1,5 @@
name: codeql/java-all
version: 0.10.1-dev
version: 0.11.0
groups: java
dbscheme: config/semmlecode.dbscheme
extractor: java

View File

@@ -1,3 +1,7 @@
## 0.8.16
No user-facing changes.
## 0.8.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.8.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.15
lastReleaseVersion: 0.8.16

View File

@@ -1,5 +1,5 @@
name: codeql/java-queries
version: 0.8.16-dev
version: 0.8.16
groups:
- java
- queries

View File

@@ -1,3 +1,7 @@
## 0.9.1
No user-facing changes.
## 0.9.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 0.9.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.9.0
lastReleaseVersion: 0.9.1

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-all
version: 0.9.1-dev
version: 0.9.1
groups: javascript
dbscheme: semmlecode.javascript.dbscheme
extractor: javascript

View File

@@ -1,3 +1,7 @@
## 0.8.16
No user-facing changes.
## 0.8.15
### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.8.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.15
lastReleaseVersion: 0.8.16

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-queries
version: 0.8.16-dev
version: 0.8.16
groups:
- javascript
- queries

View File

@@ -1,3 +1,7 @@
## 0.7.16
No user-facing changes.
## 0.7.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.7.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.7.15
lastReleaseVersion: 0.7.16

View File

@@ -1,4 +1,4 @@
name: codeql/suite-helpers
version: 0.7.16-dev
version: 0.7.16
groups: shared
warnOnImplicitThis: true

View File

@@ -1,3 +1,9 @@
## 0.12.1
### Major Analysis Improvements
* Added modeling of the `pyramid` framework, leading to new remote flow sources and sinks.
## 0.12.0
### Breaking Changes

View File

@@ -1,4 +0,0 @@
---
category: majorAnalysis
---
* Added modeling of the `pyramid` framework, leading to new remote flow sources and sinks.

View File

@@ -0,0 +1,5 @@
## 0.12.1
### Major Analysis Improvements
* Added modeling of the `pyramid` framework, leading to new remote flow sources and sinks.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.12.0
lastReleaseVersion: 0.12.1

View File

@@ -1,5 +1,5 @@
name: codeql/python-all
version: 0.12.1-dev
version: 0.12.1
groups: python
dbscheme: semmlecode.python.dbscheme
extractor: python

View File

@@ -1,3 +1,9 @@
## 0.9.16
### New Queries
* The `py/header-injection` query, originally contributed to the experimental query pack by @jorgectf, has been promoted to the main query pack and renamed to `py/http-response-splitting`. This query finds instances of http header injection / response splitting vulnerabilities.
## 0.9.15
No user-facing changes.

View File

@@ -1,4 +1,5 @@
---
category: newQuery
---
* The `py/header-injection` query, originally contributed to the experimental query pack by @jorgectf, has been promoted to the main query pack and renamed to `py/http-response-splitting`. This query finds instances of http header injection / response splitting vulnerabilities.
## 0.9.16
### New Queries
* The `py/header-injection` query, originally contributed to the experimental query pack by @jorgectf, has been promoted to the main query pack and renamed to `py/http-response-splitting`. This query finds instances of http header injection / response splitting vulnerabilities.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.9.15
lastReleaseVersion: 0.9.16

View File

@@ -1,5 +1,5 @@
name: codeql/python-queries
version: 0.9.16-dev
version: 0.9.16
groups:
- python
- queries

View File

@@ -1,3 +1,7 @@
## 0.9.1
No user-facing changes.
## 0.9.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 0.9.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.9.0
lastReleaseVersion: 0.9.1

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-all
version: 0.9.1-dev
version: 0.9.1
groups: ruby
extractor: ruby
dbscheme: ruby.dbscheme

View File

@@ -1,3 +1,7 @@
## 0.8.16
No user-facing changes.
## 0.8.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.8.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.15
lastReleaseVersion: 0.8.16

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-queries
version: 0.8.16-dev
version: 0.8.16
groups:
- ruby
- queries

View File

@@ -1,3 +1,7 @@
## 0.1.16
No user-facing changes.
## 0.1.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.1.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.1.15
lastReleaseVersion: 0.1.16

View File

@@ -1,5 +1,5 @@
name: codeql/controlflow
version: 0.1.16-dev
version: 0.1.16
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 0.2.7
No user-facing changes.
## 0.2.6
### Major Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.2.7
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.2.6
lastReleaseVersion: 0.2.7

View File

@@ -1,5 +1,5 @@
name: codeql/dataflow
version: 0.2.7-dev
version: 0.2.7
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 0.2.16
No user-facing changes.
## 0.2.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.2.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.2.15
lastReleaseVersion: 0.2.16

View File

@@ -1,5 +1,5 @@
name: codeql/mad
version: 0.2.16-dev
version: 0.2.16
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 0.0.15
No user-facing changes.
## 0.0.14
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.0.15
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.0.14
lastReleaseVersion: 0.0.15

View File

@@ -1,5 +1,5 @@
name: codeql/rangeanalysis
version: 0.0.15-dev
version: 0.0.15
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 0.2.16
No user-facing changes.
## 0.2.15
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.2.16
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.2.15
lastReleaseVersion: 0.2.16

View File

@@ -1,5 +1,5 @@
name: codeql/regex
version: 0.2.16-dev
version: 0.2.16
groups: shared
library: true
dependencies:

Some files were not shown because too many files have changed in this diff Show More