github-actions[bot]
|
6342da9503
|
Release preparation for version 2.23.4
|
2025-11-07 17:37:29 +00:00 |
|
Michael B. Gale
|
6ce8f07290
|
Revert "Release preparation for version 2.23.4"
|
2025-11-07 17:28:28 +00:00 |
|
github-actions[bot]
|
64fcdd1f2f
|
Release preparation for version 2.23.4
|
2025-11-03 14:52:23 +00:00 |
|
Nora Dimitrijević
|
974d174757
|
Actions/CodeInjectionQuery
actions/ql/src/Security/CWE-094/CodeInjectionMedium.ql
actions/ql/src/Security/CWE-094/CodeInjectionCritical.ql
|
2025-10-28 09:41:24 +01:00 |
|
Nora Dimitrijević
|
62fde8f6e7
|
Actions/ArgumentInjectionQuery
actions/ql/src/experimental/Security/CWE-088/ArgumentInjectionCritical.ql
actions/ql/src/experimental/Security/CWE-088/ArgumentInjectionMedium.ql
|
2025-10-28 09:41:21 +01:00 |
|
Nora Dimitrijević
|
c40223319c
|
Actions/EnvVarInjectionQuery
actions/ql/src/Security/CWE-077/EnvVarInjectionMedium.ql
actions/ql/src/Security/CWE-077/EnvVarInjectionCritical.ql
|
2025-10-28 09:41:18 +01:00 |
|
Nora Dimitrijević
|
edc72d29d7
|
Actions/EnvPathInjectionQuery
actions/ql/src/Security/CWE-077/EnvPathInjectionMedium.ql
actions/ql/src/Security/CWE-077/EnvPathInjectionCritical.ql
|
2025-10-28 09:41:16 +01:00 |
|
Nora Dimitrijević
|
1f53ffbdd7
|
Actions/ArtifactPoisoningQuery
actions/ql/src/Security/CWE-829/ArtifactPoisoningCritical.ql
actions/ql/src/Security/CWE-829/ArtifactPoisoningMedium.ql
|
2025-10-28 09:41:13 +01:00 |
|
Nora Dimitrijević
|
5a1a887fd2
|
Actions/ReusableWorkflowsSummaries
|
2025-10-28 09:39:16 +01:00 |
|
Nora Dimitrijević
|
1243c6362d
|
Actions/ReusableWorkflowsSources
|
2025-10-28 09:39:14 +01:00 |
|
Nora Dimitrijević
|
a972ef7e31
|
Actions/ReusableWorkflowsSinks
Same file uses source as endpoint
|
2025-10-28 09:39:11 +01:00 |
|
Nora Dimitrijević
|
9c24ce0650
|
Actions/CompositeActionsSummaries
Same file uses source as endpoint
|
2025-10-28 09:39:09 +01:00 |
|
Nora Dimitrijević
|
78f2cee51c
|
Actions/CompositeActionsSources
Same file uses source as endpoint
|
2025-10-28 09:39:06 +01:00 |
|
Nora Dimitrijević
|
d36b721513
|
Actions/CompositeActionsSinks
Same file uses source as endpoint
|
2025-10-28 09:38:55 +01:00 |
|
Nora Dimitrijević
|
bb10307303
|
Actions/SecretExfiltrationQuery
actions/ql/src/experimental/Security/CWE-200/SecretExfiltration.ql uses source as endpoint
|
2025-10-28 09:38:38 +01:00 |
|
Nora Dimitrijević
|
890ca8e7d1
|
Actions/RequestForgeryQuery
actions/ql/src/experimental/Security/CWE-918/RequestForgery.ql uses source as endpoint
|
2025-10-28 09:38:21 +01:00 |
|
Nora Dimitrijević
|
3fa8259042
|
Actions/OutputClobberingQuery
actions/ql/src/experimental/Security/CWE-074/OutputClobberingHigh.ql uses source as endpoint
|
2025-10-28 09:38:01 +01:00 |
|
github-actions[bot]
|
6dd07790ac
|
Post-release preparation for codeql-cli-2.23.3
|
2025-10-14 11:16:33 +00:00 |
|
Henry Mercer
|
5310469d69
|
Actions: Update SecretExfiltration output for typo fix
|
2025-10-14 11:33:01 +01:00 |
|
Henry Mercer
|
9507ec0853
|
Fix "be be" typos
|
2025-10-14 11:09:43 +01:00 |
|
github-actions[bot]
|
33542f7d40
|
Release preparation for version 2.23.3
|
2025-10-14 09:30:24 +00:00 |
|
github-actions[bot]
|
a7a4e43991
|
Post-release preparation for codeql-cli-2.23.2
|
2025-09-29 15:10:19 +00:00 |
|
github-actions[bot]
|
d2130a589b
|
Release preparation for version 2.23.2
|
2025-09-29 10:28:45 +00:00 |
|
github-actions[bot]
|
4e8343664f
|
Post-release preparation for codeql-cli-2.23.1
|
2025-09-17 10:13:40 +00:00 |
|
github-actions[bot]
|
02a1b1efcb
|
Release preparation for version 2.23.1
|
2025-09-16 14:14:42 +00:00 |
|
Henry Mercer
|
1e77891271
|
Merge branch 'main' into henrymercer/actions-status
|
2025-09-05 14:55:58 +01:00 |
|
Henry Mercer
|
fea05331aa
|
Add date to changelog note filename
|
2025-09-05 14:51:28 +01:00 |
|
Henry Mercer
|
526990e015
|
Add comment about GitHub API languages
|
2025-09-05 14:49:48 +01:00 |
|
Henry Mercer
|
e7fbd28505
|
Add changelog note
|
2025-09-05 14:48:12 +01:00 |
|
Henry Mercer
|
a6fb45b9cb
|
Update expected files
|
2025-09-05 13:13:43 +01:00 |
|
Arthur Baars
|
5d3ec35e29
|
Remove non-breaking spaces from code
|
2025-09-05 09:41:15 +02:00 |
|
Michael Nebel
|
a9baf34629
|
Merge pull request #20324 from michaelnebel/actions/ql4ql
Actions: Fix some Ql4Ql violations.
|
2025-09-03 12:29:06 +02:00 |
|
Arthur Baars
|
0bb7fdccf6
|
Merge pull request #20347 from github/post-release-prep/codeql-cli-2.23.0
Post-release preparation for codeql-cli-2.23.0
|
2025-09-02 14:14:03 +02:00 |
|
Anders Schack-Mulligen
|
f833fe0e6e
|
Merge pull request #20300 from aschackmull/cfg/successortype
Shared: Add a shared SuccessorType implementation
|
2025-09-02 14:09:35 +02:00 |
|
github-actions[bot]
|
e8a2600a0c
|
Post-release preparation for codeql-cli-2.23.0
|
2025-09-02 11:46:23 +00:00 |
|
github-actions[bot]
|
0bfa93828b
|
Release preparation for version 2.23.0
|
2025-09-02 11:09:32 +00:00 |
|
Michael Nebel
|
64f9758c29
|
Actions: Fix some Ql4Ql violations.
|
2025-09-01 14:45:00 +02:00 |
|
Anders Schack-Mulligen
|
144e34c669
|
Shared: Use shared SuccessorType in shared Cfg and BasicBlock libs.
|
2025-09-01 13:43:32 +02:00 |
|
Anders Schack-Mulligen
|
92fcda3cc7
|
Actions: Use shared SuccessorType.
|
2025-09-01 12:56:08 +02:00 |
|
Henry Mercer
|
71bac5eda8
|
Actions: Add file coverage baseline
|
2025-08-29 20:10:45 +01:00 |
|
Henry Mercer
|
67dc01b636
|
Actions: Add successfully extracted files query
|
2025-08-29 20:10:43 +01:00 |
|
Henry Mercer
|
55869f28c3
|
Specify default queries in codeql-extractor.yml
|
2025-08-29 17:34:45 +01:00 |
|
github-actions[bot]
|
42e3d31c49
|
Post-release preparation for codeql-cli-2.22.4
|
2025-08-18 14:42:42 +00:00 |
|
github-actions[bot]
|
90d29994c8
|
Release preparation for version 2.22.4
|
2025-08-18 14:06:09 +00:00 |
|
Nora Dimitrijević
|
126d24a522
|
[DIFF-INFORMED] Actions: EnvVarInjection
https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/Security/CWE-077/EnvVarInjectionMedium.ql#L35
https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/Security/CWE-077/EnvVarInjectionCritical.ql#L46
|
2025-08-15 11:11:12 +02:00 |
|
Nora Dimitrijević
|
f1445eb52f
|
[DIFF-INFORMED] Actions: EnvPathInjection
https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/Security/CWE-077/EnvPathInjectionMedium.ql#L30
https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/Security/CWE-077/EnvPathInjectionCritical.ql#L37
|
2025-08-15 11:11:07 +02:00 |
|
Nora Dimitrijević
|
f1b995a736
|
[DIFF-INFORMED] Actions: CommandInjection
https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/experimental/Security/CWE-078/CommandInjectionMedium.ql#L24
https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/experimental/Security/CWE-078/CommandInjectionCritical.ql#L28
|
2025-08-15 11:11:03 +02:00 |
|
Nora Dimitrijević
|
418e4b4a3a
|
[DIFF-INFORMED] Actions: CodeInjection
Query: https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/Security/CWE-349/CachePoisoningViaCodeInjection.ql#L46
|
2025-08-15 11:10:58 +02:00 |
|
Nora Dimitrijević
|
bbda2902be
|
[DIFF-INFORMED] Actions: ArtifactPoisoning
Queries:
- https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/Security/CWE-829/ArtifactPoisoningMedium.ql#L23
- https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/Security/CWE-829/ArtifactPoisoningCritical.ql#L26
|
2025-08-15 11:10:42 +02:00 |
|
Nora Dimitrijević
|
896819fdf3
|
[DIFF-INFORMED] Actions: ArgumentInjection
Query:
- https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/experimental/Security/CWE-088/ArgumentInjectionMedium.ql#L23
- https://github.com/d10c/codeql/blob/d10c/diff-informed-phase-3/actions/ql/src/experimental/Security/CWE-088/ArgumentInjectionCritical.ql#L27
|
2025-08-15 11:10:14 +02:00 |
|