Merge pull request #16228 from github/post-release-prep/codeql-cli-2.17.1

Post-release preparation for codeql-cli-2.17.1
This commit is contained in:
Alexander Eyers-Taylor
2024-04-17 11:24:34 +01:00
committed by GitHub
143 changed files with 349 additions and 104 deletions

View File

@@ -1,3 +1,7 @@
## 0.12.11
No user-facing changes.
## 0.12.10
### New Features

View File

@@ -0,0 +1,3 @@
## 0.12.11
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.12.10
lastReleaseVersion: 0.12.11

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-all
version: 0.12.11-dev
version: 0.12.12-dev
groups: cpp
dbscheme: semmlecode.cpp.dbscheme
extractor: cpp

View File

@@ -1,3 +1,7 @@
## 0.9.10
No user-facing changes.
## 0.9.9
### New Queries

View File

@@ -0,0 +1,3 @@
## 0.9.10
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.9.9
lastReleaseVersion: 0.9.10

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-queries
version: 0.9.10-dev
version: 0.9.11-dev
groups:
- cpp
- queries

View File

@@ -1,3 +1,7 @@
## 1.7.14
No user-facing changes.
## 1.7.13
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.7.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.7.13
lastReleaseVersion: 1.7.14

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-all
version: 1.7.14-dev
version: 1.7.15-dev
groups:
- csharp
- solorigate

View File

@@ -1,3 +1,7 @@
## 1.7.14
No user-facing changes.
## 1.7.13
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.7.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.7.13
lastReleaseVersion: 1.7.14

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-queries
version: 1.7.14-dev
version: 1.7.15-dev
groups:
- csharp
- solorigate

View File

@@ -1,3 +1,9 @@
## 0.9.1
### Minor Analysis Improvements
* Extracting suppress nullable warning expressions did not work when applied directly to a method call (like `System.Console.Readline()!`). This has been fixed.
## 0.9.0
### Breaking Changes

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 0.9.1
### Minor Analysis Improvements
* Extracting suppress nullable warning expressions did not work when applied directly to a method call (like `System.Console.Readline()!`). This has been fixed.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.9.0
lastReleaseVersion: 0.9.1

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-all
version: 0.9.1-dev
version: 0.9.2-dev
groups: csharp
dbscheme: semmlecode.csharp.dbscheme
extractor: csharp

View File

@@ -1,3 +1,7 @@
## 0.8.14
No user-facing changes.
## 0.8.13
### Major Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.8.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.13
lastReleaseVersion: 0.8.14

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-queries
version: 0.8.14-dev
version: 0.8.15-dev
groups:
- csharp
- queries

View File

@@ -1,3 +1,7 @@
## 0.0.13
No user-facing changes.
## 0.0.12
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.0.13
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.0.12
lastReleaseVersion: 0.0.13

View File

@@ -1,5 +1,5 @@
name: codeql-go-consistency-queries
version: 0.0.13-dev
version: 0.0.14-dev
groups:
- go
- queries

View File

@@ -1,3 +1,10 @@
## 0.7.14
### Minor Analysis Improvements
* Data flow through variables declared in statements of the form `x := y.(type)` at the beginning of type switches has been fixed, which may result in more alerts.
* Added strings.ReplaceAll, http.ParseMultipartForm sanitizers and remove path sanitizer.
## 0.7.13
### Minor Analysis Improvements

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Added strings.ReplaceAll, http.ParseMultipartForm sanitizers and remove path sanitizer.

View File

@@ -1,4 +1,6 @@
---
category: minorAnalysis
---
## 0.7.14
### Minor Analysis Improvements
* Data flow through variables declared in statements of the form `x := y.(type)` at the beginning of type switches has been fixed, which may result in more alerts.
* Added strings.ReplaceAll, http.ParseMultipartForm sanitizers and remove path sanitizer.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.7.13
lastReleaseVersion: 0.7.14

View File

@@ -1,5 +1,5 @@
name: codeql/go-all
version: 0.7.14-dev
version: 0.7.15-dev
groups: go
dbscheme: go.dbscheme
extractor: go

View File

@@ -1,3 +1,7 @@
## 0.7.14
No user-facing changes.
## 0.7.13
### New Queries

View File

@@ -0,0 +1,3 @@
## 0.7.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.7.13
lastReleaseVersion: 0.7.14

View File

@@ -1,5 +1,5 @@
name: codeql/go-queries
version: 0.7.14-dev
version: 0.7.15-dev
groups:
- go
- queries

View File

@@ -1,3 +1,7 @@
## 0.0.21
No user-facing changes.
## 0.0.20
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.0.21
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.0.20
lastReleaseVersion: 0.0.21

View File

@@ -1,5 +1,5 @@
name: codeql/java-automodel-queries
version: 0.0.21-dev
version: 0.0.22-dev
groups:
- java
- automodel

View File

@@ -1,3 +1,9 @@
## 0.9.1
### Minor Analysis Improvements
* About 6,700 summary models and 6,800 neutral summary models for the JDK that were generated using data flow have been added. This may lead to new alerts being reported.
## 0.9.0
### Breaking Changes

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 0.9.1
### Minor Analysis Improvements
* About 6,700 summary models and 6,800 neutral summary models for the JDK that were generated using data flow have been added. This may lead to new alerts being reported.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.9.0
lastReleaseVersion: 0.9.1

View File

@@ -1,5 +1,5 @@
name: codeql/java-all
version: 0.9.1-dev
version: 0.9.2-dev
groups: java
dbscheme: config/semmlecode.dbscheme
extractor: java

View File

@@ -1,3 +1,10 @@
## 0.8.14
### Minor Analysis Improvements
* The `java/unknown-javadoc-parameter` now accepts `@param` tags that apply to the parameters of a
record.
## 0.8.13
### New Queries

View File

@@ -1,5 +1,6 @@
---
category: minorAnalysis
---
## 0.8.14
### Minor Analysis Improvements
* The `java/unknown-javadoc-parameter` now accepts `@param` tags that apply to the parameters of a
record.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.13
lastReleaseVersion: 0.8.14

View File

@@ -1,5 +1,5 @@
name: codeql/java-queries
version: 0.8.14-dev
version: 0.8.15-dev
groups:
- java
- queries

View File

@@ -1,3 +1,7 @@
## 0.8.14
No user-facing changes.
## 0.8.13
### Major Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.8.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.13
lastReleaseVersion: 0.8.14

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-all
version: 0.8.14-dev
version: 0.8.15-dev
groups: javascript
dbscheme: semmlecode.javascript.dbscheme
extractor: javascript

View File

@@ -1,3 +1,10 @@
## 0.8.14
### Minor Analysis Improvements
* `API::Node#getInstance()` now includes instances of subclasses, include transitive subclasses.
The same changes applies to uses of the `Instance` token in data extensions.
## 0.8.13
### Query Metadata Changes

View File

@@ -1,5 +1,6 @@
---
category: minorAnalysis
---
## 0.8.14
### Minor Analysis Improvements
* `API::Node#getInstance()` now includes instances of subclasses, include transitive subclasses.
The same changes applies to uses of the `Instance` token in data extensions.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.13
lastReleaseVersion: 0.8.14

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-queries
version: 0.8.14-dev
version: 0.8.15-dev
groups:
- javascript
- queries

View File

@@ -1,3 +1,7 @@
## 0.7.14
No user-facing changes.
## 0.7.13
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.7.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.7.13
lastReleaseVersion: 0.7.14

View File

@@ -1,4 +1,4 @@
name: codeql/suite-helpers
version: 0.7.14-dev
version: 0.7.15-dev
groups: shared
warnOnImplicitThis: true

View File

@@ -1,3 +1,9 @@
## 0.11.14
### Minor Analysis Improvements
* Improved the type-tracking capabilities (and therefore also API graphs) to allow tracking items in tuples and dictionaries.
## 0.11.13
No user-facing changes.

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 0.11.14
### Minor Analysis Improvements
* Improved the type-tracking capabilities (and therefore also API graphs) to allow tracking items in tuples and dictionaries.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.11.13
lastReleaseVersion: 0.11.14

View File

@@ -1,5 +1,5 @@
name: codeql/python-all
version: 0.11.14-dev
version: 0.11.15-dev
groups: python
dbscheme: semmlecode.python.dbscheme
extractor: python

View File

@@ -1,3 +1,7 @@
## 0.9.14
No user-facing changes.
## 0.9.13
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.9.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.9.13
lastReleaseVersion: 0.9.14

View File

@@ -1,5 +1,5 @@
name: codeql/python-queries
version: 0.9.14-dev
version: 0.9.15-dev
groups:
- python
- queries

View File

@@ -1,3 +1,7 @@
## 0.8.14
No user-facing changes.
## 0.8.13
### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.8.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.13
lastReleaseVersion: 0.8.14

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-all
version: 0.8.14-dev
version: 0.8.15-dev
groups: ruby
extractor: ruby
dbscheme: ruby.dbscheme

View File

@@ -1,3 +1,10 @@
## 0.8.14
### New Queries
* Added a new query, `rb/insecure-mass-assignment`, for finding instances of mass assignment operations accepting arbitrary parameters from remote user input.
* Added a new query, `rb/csrf-protection-not-enabled`, to detect cases where Cross-Site Request Forgery protection is not enabled in Ruby on Rails controllers.
## 0.8.13
No user-facing changes.

View File

@@ -1,4 +0,0 @@
---
category: newQuery
---
* Added a new query, `rb/csrf-protection-not-enabled`, to detect cases where Cross-Site Request Forgery protection is not enabled in Ruby on Rails controllers.

View File

@@ -1,4 +0,0 @@
---
category: newQuery
---
* Added a new query, `rb/insecure-mass-assignment`, for finding instances of mass assignment operations accepting arbitrary parameters from remote user input.

View File

@@ -0,0 +1,6 @@
## 0.8.14
### New Queries
* Added a new query, `rb/insecure-mass-assignment`, for finding instances of mass assignment operations accepting arbitrary parameters from remote user input.
* Added a new query, `rb/csrf-protection-not-enabled`, to detect cases where Cross-Site Request Forgery protection is not enabled in Ruby on Rails controllers.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.8.13
lastReleaseVersion: 0.8.14

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-queries
version: 0.8.14-dev
version: 0.8.15-dev
groups:
- ruby
- queries

View File

@@ -1,3 +1,7 @@
## 0.1.14
No user-facing changes.
## 0.1.13
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.1.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.1.13
lastReleaseVersion: 0.1.14

View File

@@ -1,5 +1,5 @@
name: codeql/controlflow
version: 0.1.14-dev
version: 0.1.15-dev
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,9 @@
## 0.2.5
### New Features
* The `PathGraph` result of a data flow computation has been augmented with model provenance information for each of the flow steps. Any qltests that include the edges relation in their output (for example, `.qlref`s that reference path-problem queries) will need to be have their expected output updated accordingly.
## 0.2.4
### Minor Analysis Improvements

View File

@@ -1,4 +1,5 @@
---
category: feature
---
## 0.2.5
### New Features
* The `PathGraph` result of a data flow computation has been augmented with model provenance information for each of the flow steps. Any qltests that include the edges relation in their output (for example, `.qlref`s that reference path-problem queries) will need to be have their expected output updated accordingly.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.2.4
lastReleaseVersion: 0.2.5

View File

@@ -1,5 +1,5 @@
name: codeql/dataflow
version: 0.2.5-dev
version: 0.2.6-dev
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 0.2.14
No user-facing changes.
## 0.2.13
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.2.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.2.13
lastReleaseVersion: 0.2.14

View File

@@ -1,5 +1,5 @@
name: codeql/mad
version: 0.2.14-dev
version: 0.2.15-dev
groups: shared
library: true
dependencies: null

View File

@@ -1,3 +1,7 @@
## 0.0.13
No user-facing changes.
## 0.0.12
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.0.13
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.0.12
lastReleaseVersion: 0.0.13

View File

@@ -1,5 +1,5 @@
name: codeql/rangeanalysis
version: 0.0.13-dev
version: 0.0.14-dev
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 0.2.14
No user-facing changes.
## 0.2.13
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.2.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.2.13
lastReleaseVersion: 0.2.14

View File

@@ -1,5 +1,5 @@
name: codeql/regex
version: 0.2.14-dev
version: 0.2.15-dev
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 0.2.14
No user-facing changes.
## 0.2.13
No user-facing changes.

Some files were not shown because too many files have changed in this diff Show More