Release preparation for version 2.22.3

This commit is contained in:
github-actions[bot]
2025-08-04 15:47:57 +00:00
parent 65bf76e3ed
commit fd82aeb1f8
172 changed files with 424 additions and 134 deletions

View File

@@ -1,3 +1,7 @@
## 0.4.14
No user-facing changes.
## 0.4.13
### Bug Fixes

View File

@@ -0,0 +1,3 @@
## 0.4.14
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.4.13
lastReleaseVersion: 0.4.14

View File

@@ -1,5 +1,5 @@
name: codeql/actions-all
version: 0.4.14-dev
version: 0.4.14
library: true
warnOnImplicitThis: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 0.6.6
No user-facing changes.
## 0.6.5
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 0.6.6
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.6.5
lastReleaseVersion: 0.6.6

View File

@@ -1,5 +1,5 @@
name: codeql/actions-queries
version: 0.6.6-dev
version: 0.6.6
library: false
warnOnImplicitThis: true
groups: [actions, queries]

View File

@@ -1,3 +1,13 @@
## 5.4.0
### New Features
* Exposed various SSA-related classes (`Definition`, `PhiNode`, `ExplicitDefinition`, `DirectExplicitDefinition`, and `IndirectExplicitDefinition`) which were previously only usable inside the internal dataflow directory.
### Minor Analysis Improvements
* The `cpp/overrun-write` query now recognizes more bound checks and thus produces fewer false positives.
## 5.3.0
### Deprecated APIs

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* The `cpp/overrun-write` query now recognizes more bound checks and thus produces fewer false positives.

View File

@@ -1,4 +0,0 @@
---
category: feature
---
* Exposed various SSA-related classes (`Definition`, `PhiNode`, `ExplicitDefinition`, `DirectExplicitDefinition`, and `IndirectExplicitDefinition`) which were previously only usable inside the internal dataflow directory.

View File

@@ -0,0 +1,9 @@
## 5.4.0
### New Features
* Exposed various SSA-related classes (`Definition`, `PhiNode`, `ExplicitDefinition`, `DirectExplicitDefinition`, and `IndirectExplicitDefinition`) which were previously only usable inside the internal dataflow directory.
### Minor Analysis Improvements
* The `cpp/overrun-write` query now recognizes more bound checks and thus produces fewer false positives.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 5.3.0
lastReleaseVersion: 5.4.0

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-all
version: 5.3.1-dev
version: 5.4.0
groups: cpp
dbscheme: semmlecode.cpp.dbscheme
extractor: cpp

View File

@@ -1,3 +1,9 @@
## 1.4.5
### Minor Analysis Improvements
* The "Initialization code not run" query (`cpp/initialization-not-run`) no longer reports an alert on static global variables that has no dereference.
## 1.4.4
### Minor Analysis Improvements

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 1.4.5
### Minor Analysis Improvements
* The "Initialization code not run" query (`cpp/initialization-not-run`) no longer reports an alert on static global variables that has no dereference.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.4.4
lastReleaseVersion: 1.4.5

View File

@@ -1,5 +1,5 @@
name: codeql/cpp-queries
version: 1.4.5-dev
version: 1.4.5
groups:
- cpp
- queries

View File

@@ -1,3 +1,7 @@
## 1.7.45
No user-facing changes.
## 1.7.44
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.7.45
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.7.44
lastReleaseVersion: 1.7.45

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-all
version: 1.7.45-dev
version: 1.7.45
groups:
- csharp
- solorigate

View File

@@ -1,3 +1,7 @@
## 1.7.45
No user-facing changes.
## 1.7.44
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.7.45
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.7.44
lastReleaseVersion: 1.7.45

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-solorigate-queries
version: 1.7.45-dev
version: 1.7.45
groups:
- csharp
- solorigate

View File

@@ -1,3 +1,7 @@
## 5.2.1
No user-facing changes.
## 5.2.0
### New Features

View File

@@ -0,0 +1,3 @@
## 5.2.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 5.2.0
lastReleaseVersion: 5.2.1

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-all
version: 5.2.1-dev
version: 5.2.1
groups: csharp
dbscheme: semmlecode.csharp.dbscheme
extractor: csharp

View File

@@ -1,3 +1,7 @@
## 1.3.2
No user-facing changes.
## 1.3.1
### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 1.3.2
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.3.1
lastReleaseVersion: 1.3.2

View File

@@ -1,5 +1,5 @@
name: codeql/csharp-queries
version: 1.3.2-dev
version: 1.3.2
groups:
- csharp
- queries

View File

@@ -1,3 +1,7 @@
## 1.0.28
No user-facing changes.
## 1.0.27
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.0.28
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.27
lastReleaseVersion: 1.0.28

View File

@@ -1,5 +1,5 @@
name: codeql-go-consistency-queries
version: 1.0.28-dev
version: 1.0.28
groups:
- go
- queries

View File

@@ -1,3 +1,7 @@
## 4.3.1
No user-facing changes.
## 4.3.0
### Deprecated APIs

View File

@@ -0,0 +1,3 @@
## 4.3.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 4.3.0
lastReleaseVersion: 4.3.1

View File

@@ -1,5 +1,5 @@
name: codeql/go-all
version: 4.3.1-dev
version: 4.3.1
groups: go
dbscheme: go.dbscheme
extractor: go

View File

@@ -1,3 +1,7 @@
## 1.4.2
No user-facing changes.
## 1.4.1
### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 1.4.2
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.4.1
lastReleaseVersion: 1.4.2

View File

@@ -1,5 +1,5 @@
name: codeql/go-queries
version: 1.4.2-dev
version: 1.4.2
groups:
- go
- queries

View File

@@ -1,3 +1,9 @@
## 7.5.0
### New Features
* Kotlin versions up to 2.2.2\ *x* are now supported.
## 7.4.0
### Deprecated APIs
@@ -10,7 +16,7 @@
### New Features
* You can now add sinks for the query "Deserialization of user-controlled data" (`java/unsafe-deserialization`) using [data extensions](https://codeql.github.com/docs/codeql-language-guides/customizing-library-models-for-java-and-kotlin/#extensible-predicates-used-to-create-custom-models-in-java-and-kotlin) by extending `sinkModel` and using the kind "unsafe-deserialization". The existing sinks which do not require extra logic to determine if they are unsafe are now defined in this way.
* You can now add sinks for the query "Deserialization of user-controlled data" (`java/unsafe-deserialization`) using [data extensions](https://codeql.github.com/docs/codeql-language-guides/customizing-library-models-for-java-and-kotlin/#extensible-predicates-used-to-create-custom-models-in-java-and-kotlin) by extending `sinkModel` and using the kind "unsafe-deserialization". The existing sinks that do not require extra logic to determine if they are unsafe are now defined in this way.
### Minor Analysis Improvements

View File

@@ -1,4 +1,5 @@
---
category: feature
---
## 7.5.0
### New Features
* Kotlin versions up to 2.2.2\ *x* are now supported.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 7.4.0
lastReleaseVersion: 7.5.0

View File

@@ -1,5 +1,5 @@
name: codeql/java-all
version: 7.4.1-dev
version: 7.5.0
groups: java
dbscheme: config/semmlecode.dbscheme
extractor: java

View File

@@ -1,3 +1,7 @@
## 1.6.2
No user-facing changes.
## 1.6.1
### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 1.6.2
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.6.1
lastReleaseVersion: 1.6.2

View File

@@ -1,5 +1,5 @@
name: codeql/java-queries
version: 1.6.2-dev
version: 1.6.2
groups:
- java
- queries

View File

@@ -1,3 +1,9 @@
## 2.6.8
### Minor Analysis Improvements
* The regular expressions in `SensitiveDataHeuristics.qll` have been extended to find more instances of sensitive data such as secrets used in authentication, finance and health information, and device data. The heuristics have also been refined to find fewer false positive matches. This will improve results for queries related to sensitive information.
## 2.6.7
### Minor Analysis Improvements

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 2.6.8
### Minor Analysis Improvements
* The regular expressions in `SensitiveDataHeuristics.qll` have been extended to find more instances of sensitive data such as secrets used in authentication, finance and health information, and device data. The heuristics have also been refined to find fewer false positive matches. This will improve results for queries related to sensitive information.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 2.6.7
lastReleaseVersion: 2.6.8

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-all
version: 2.6.8-dev
version: 2.6.8
groups: javascript
dbscheme: semmlecode.javascript.dbscheme
extractor: javascript

View File

@@ -1,3 +1,7 @@
## 2.0.1
No user-facing changes.
## 2.0.0
### Breaking Changes

View File

@@ -0,0 +1,3 @@
## 2.0.1
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 2.0.0
lastReleaseVersion: 2.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/javascript-queries
version: 2.0.1-dev
version: 2.0.1
groups:
- javascript
- queries

View File

@@ -1,3 +1,7 @@
## 1.0.28
No user-facing changes.
## 1.0.27
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.0.28
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.0.27
lastReleaseVersion: 1.0.28

View File

@@ -1,4 +1,4 @@
name: codeql/suite-helpers
version: 1.0.28-dev
version: 1.0.28
groups: shared
warnOnImplicitThis: true

View File

@@ -1,3 +1,9 @@
## 4.0.12
### Minor Analysis Improvements
* The regular expressions in `SensitiveDataHeuristics.qll` have been extended to find more instances of sensitive data such as secrets used in authentication, finance and health information, and device data. The heuristics have also been refined to find fewer false positive matches. This will improve results for queries related to sensitive information.
## 4.0.11
### Minor Analysis Improvements

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 4.0.12
### Minor Analysis Improvements
* The regular expressions in `SensitiveDataHeuristics.qll` have been extended to find more instances of sensitive data such as secrets used in authentication, finance and health information, and device data. The heuristics have also been refined to find fewer false positive matches. This will improve results for queries related to sensitive information.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 4.0.11
lastReleaseVersion: 4.0.12

View File

@@ -1,5 +1,5 @@
name: codeql/python-all
version: 4.0.12-dev
version: 4.0.12
groups: python
dbscheme: semmlecode.python.dbscheme
extractor: python

View File

@@ -1,3 +1,7 @@
## 1.6.2
No user-facing changes.
## 1.6.1
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.6.2
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.6.1
lastReleaseVersion: 1.6.2

View File

@@ -1,5 +1,5 @@
name: codeql/python-queries
version: 1.6.2-dev
version: 1.6.2
groups:
- python
- queries

View File

@@ -1,3 +1,9 @@
## 5.0.1
### Minor Analysis Improvements
* The regular expressions in `SensitiveDataHeuristics.qll` have been extended to find more instances of sensitive data such as secrets used in authentication, finance and health information, and device data. The heuristics have also been refined to find fewer false positive matches. This will improve results for queries related to sensitive information.
## 5.0.0
### Breaking Changes

View File

@@ -1,4 +1,5 @@
---
category: minorAnalysis
---
## 5.0.1
### Minor Analysis Improvements
* The regular expressions in `SensitiveDataHeuristics.qll` have been extended to find more instances of sensitive data such as secrets used in authentication, finance and health information, and device data. The heuristics have also been refined to find fewer false positive matches. This will improve results for queries related to sensitive information.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 5.0.0
lastReleaseVersion: 5.0.1

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-all
version: 5.0.1-dev
version: 5.0.1
groups: ruby
extractor: ruby
dbscheme: ruby.dbscheme

View File

@@ -1,3 +1,7 @@
## 1.4.2
No user-facing changes.
## 1.4.1
No user-facing changes.

View File

@@ -0,0 +1,3 @@
## 1.4.2
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 1.4.1
lastReleaseVersion: 1.4.2

View File

@@ -1,5 +1,5 @@
name: codeql/ruby-queries
version: 1.4.2-dev
version: 1.4.2
groups:
- ruby
- queries

View File

@@ -1,3 +1,10 @@
## 0.1.13
### Minor Analysis Improvements
* Removed deprecated dataflow extensible predicates `sourceModelDeprecated`, `sinkModelDeprecated`, and `summaryModelDeprecated`, along with their associated classes.
* The regular expressions in `SensitiveDataHeuristics.qll` have been extended to find more instances of sensitive data such as secrets used in authentication, finance and health information, and device data. The heuristics have also been refined to find fewer false positive matches. This will improve results for queries related to sensitive information.
## 0.1.12
### Minor Analysis Improvements

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Removed deprecated dataflow extensible predicates `sourceModelDeprecated`, `sinkModelDeprecated`, and `summaryModelDeprecated`, along with their associated classes.

View File

@@ -0,0 +1,6 @@
## 0.1.13
### Minor Analysis Improvements
* Removed deprecated dataflow extensible predicates `sourceModelDeprecated`, `sinkModelDeprecated`, and `summaryModelDeprecated`, along with their associated classes.
* The regular expressions in `SensitiveDataHeuristics.qll` have been extended to find more instances of sensitive data such as secrets used in authentication, finance and health information, and device data. The heuristics have also been refined to find fewer false positive matches. This will improve results for queries related to sensitive information.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.1.12
lastReleaseVersion: 0.1.13

View File

@@ -1,5 +1,5 @@
name: codeql/rust-all
version: 0.1.13-dev
version: 0.1.13
groups: rust
extractor: rust
dbscheme: rust.dbscheme

View File

@@ -1,3 +1,16 @@
## 0.1.13
### New Queries
* Added a new query, `rust/hardcoded-crytographic-value`, for detecting use of hardcoded keys, passwords, salts and initialization vectors.
### Minor Analysis Improvements
* Type inference now supports closures, calls to closures, and trait bounds
using the `FnOnce` trait.
* Type inference now supports trait objects, i.e., `dyn Trait` types.
* Type inference now supports tuple types.
## 0.1.12
### New Queries

View File

@@ -1,4 +0,0 @@
---
category: newQuery
---
* Added a new query, `rust/hardcoded-crytographic-value`, for detecting use of hardcoded keys, passwords, salts and initialization vectors.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Type inference now supports tuple types.

View File

@@ -1,4 +0,0 @@
---
category: minorAnalysis
---
* Type inference now supports trait objects, i.e., `dyn Trait` types.

View File

@@ -1,5 +0,0 @@
---
category: minorAnalysis
---
* Type inference now supports closures, calls to closures, and trait bounds
using the `FnOnce` trait.

View File

@@ -0,0 +1,12 @@
## 0.1.13
### New Queries
* Added a new query, `rust/hardcoded-crytographic-value`, for detecting use of hardcoded keys, passwords, salts and initialization vectors.
### Minor Analysis Improvements
* Type inference now supports closures, calls to closures, and trait bounds
using the `FnOnce` trait.
* Type inference now supports trait objects, i.e., `dyn Trait` types.
* Type inference now supports tuple types.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.1.12
lastReleaseVersion: 0.1.13

View File

@@ -1,5 +1,5 @@
name: codeql/rust-queries
version: 0.1.13-dev
version: 0.1.13
groups:
- rust
- queries

View File

@@ -1,3 +1,7 @@
## 0.0.2
No user-facing changes.
## 0.0.1
### Minor Analysis Improvements

View File

@@ -0,0 +1,3 @@
## 0.0.2
No user-facing changes.

View File

@@ -1,2 +1,2 @@
---
lastReleaseVersion: 0.0.1
lastReleaseVersion: 0.0.2

View File

@@ -1,5 +1,5 @@
name: codeql/concepts
version: 0.0.2-dev
version: 0.0.2
groups: shared
library: true
dependencies:

View File

@@ -1,3 +1,7 @@
## 2.0.12
No user-facing changes.
## 2.0.11
No user-facing changes.

Some files were not shown because too many files have changed in this diff Show More