Michael B. Gale
|
b34777e67f
|
Merge pull request #21332 from github/post-release-prep/codeql-cli-2.24.2
Post-release preparation for codeql-cli-2.24.2
|
2026-02-16 17:50:30 +00:00 |
|
github-actions[bot]
|
b5898c5a30
|
Post-release preparation for codeql-cli-2.24.2
|
2026-02-16 17:07:45 +00:00 |
|
Michael B. Gale
|
fb67f93a86
|
Merge pull request #21330 from github/release-prep/2.24.2
Release preparation for version 2.24.2
codeql-cli/latest
codeql-cli/v2.24.2
|
2026-02-16 15:00:27 +00:00 |
|
Tom Hvitved
|
79cbf2f1cf
|
Merge pull request #21312 from hvitved/rust/type-inference-bad-join
Rust: Fix bad join
|
2026-02-16 14:45:58 +01:00 |
|
github-actions[bot]
|
ef04f927fb
|
Release preparation for version 2.24.2
|
2026-02-16 13:29:25 +00:00 |
|
Owen Mansel-Chan
|
7742a5667f
|
Merge pull request #21326 from owen-mc/java/log-injection-regex-match
Java: Recognise `@Pattern` annotation as sanitizer for log injection
|
2026-02-16 12:14:28 +00:00 |
|
Owen Mansel-Chan
|
cf73d96c9d
|
Update test results (remove SPURIOUS annotations)
|
2026-02-16 12:03:02 +00:00 |
|
Owen Mansel-Chan
|
597be6a1c0
|
Add change note
|
2026-02-16 12:01:15 +00:00 |
|
Owen Mansel-Chan
|
94f1d94a2b
|
Rename MethodCall ma to mc
|
2026-02-16 12:01:14 +00:00 |
|
Owen Mansel-Chan
|
9fc95f5171
|
Expand log injection sanitizers to annotation regex matches
|
2026-02-16 12:01:13 +00:00 |
|
Owen Mansel-Chan
|
924bb92d91
|
Expand log injection sanitizer guards to non-annotation regex matches
|
2026-02-16 12:01:11 +00:00 |
|
Owen Mansel-Chan
|
60e58f8219
|
Refactor logInjectionGuard part 2
|
2026-02-16 12:01:10 +00:00 |
|
Owen Mansel-Chan
|
6c0c1d558e
|
Refactor logInjectionGuard part 1
|
2026-02-16 12:01:08 +00:00 |
|
Owen Mansel-Chan
|
146fc7a8c0
|
Add failing log injection test for @Pattern validation
|
2026-02-16 12:01:07 +00:00 |
|
Jeroen Ketema
|
7d2b40c657
|
Merge pull request #21313 from MathiasVP/range-analysis-lower-bound-and-measure-enums
C++: Measure bounds for `Enum` constants and reduce `getBoundsLimit`
|
2026-02-16 11:50:38 +01:00 |
|
Mathias Vorreiter Pedersen
|
5ccd61ac97
|
C++: Respond to review comments.
|
2026-02-16 09:49:31 +00:00 |
|
Mathias Vorreiter Pedersen
|
bfbb2eef6c
|
C++: Add a test showing that we infer a lower and upper bound for parameters of enum types.
|
2026-02-16 09:38:15 +00:00 |
|
Mathias Vorreiter Pedersen
|
84be8517bb
|
Update cpp/ql/lib/semmle/code/cpp/rangeanalysis/SimpleRangeAnalysis.qll
Co-authored-by: Copilot <175728472+Copilot@users.noreply.github.com>
|
2026-02-16 09:30:56 +00:00 |
|
Tom Hvitved
|
149f3ed5b6
|
Merge pull request #21301 from hvitved/rust/type-inference-trait-call-perf
Rust: Speedup type inference for `Trait::function()` calls
|
2026-02-16 10:20:50 +01:00 |
|
Owen Mansel-Chan
|
47a9f87d9b
|
Merge pull request #21310 from owen-mc/java/regex-execution
Java: Add RegexMatch concept and recognise `@Pattern` annotation as sanitizer
|
2026-02-16 09:11:47 +00:00 |
|
Simon Friis Vindum
|
6f609a5ed6
|
Merge pull request #21316 from paldepind/ruby/binary-of-at-start-of-line
Ruby: Add test cases for binary operator at start of line
|
2026-02-16 09:49:48 +01:00 |
|
Owen Mansel-Chan
|
16ddb5658f
|
Small refactor for stylistic consistency
|
2026-02-15 14:39:23 +00:00 |
|
Owen Mansel-Chan
|
d6b71a346e
|
Extend RegexMatch framework to allow for MatcherMatchesCall edge case
|
2026-02-15 14:39:21 +00:00 |
|
Owen Mansel-Chan
|
8f8f4c2d52
|
Fix Matcher.matches edge case
|
2026-02-14 00:28:37 +00:00 |
|
Owen Mansel-Chan
|
90befa0c00
|
Add failing test for Matcher.matches() edge case
|
2026-02-14 00:28:34 +00:00 |
|
Owen Mansel-Chan
|
ca4c988e97
|
Remove redundant variable
|
2026-02-13 22:58:09 +00:00 |
|
Owen Mansel-Chan
|
2e0f244376
|
Improve QLDoc on RegexMatch.getName()
|
2026-02-13 22:55:01 +00:00 |
|
Owen Mansel-Chan
|
c7099584b4
|
Put imports implementing abstract classes in private module
|
2026-02-13 22:51:53 +00:00 |
|
Owen Mansel-Chan
|
3c161f9c93
|
Make contract of RegexMatch clear
|
2026-02-13 22:47:44 +00:00 |
|
Owen Mansel-Chan
|
1fefa989d7
|
Rename RegexMatch and only include expressions
|
2026-02-13 22:45:48 +00:00 |
|
Owen Mansel-Chan
|
953ff9f0d0
|
PatternAnnotation.getString() should only be field reads
|
2026-02-13 22:41:20 +00:00 |
|
Owen Mansel-Chan
|
106254b220
|
Improve QLDocs
|
2026-02-13 22:40:36 +00:00 |
|
Owen Mansel-Chan
|
5bdf550317
|
Fix QLDocs
|
2026-02-12 16:57:14 +00:00 |
|
Owen Mansel-Chan
|
c539c2f4fd
|
Add change note
|
2026-02-12 16:57:12 +00:00 |
|
Owen Mansel-Chan
|
bfe26c1989
|
Add @Pattern as RegexExecution => SSRF sanitizer
|
2026-02-12 16:57:11 +00:00 |
|
Owen Mansel-Chan
|
d0999e3abd
|
Add failing test for @Pattern validation
|
2026-02-12 16:57:04 +00:00 |
|
Simon Friis Vindum
|
bf02e478fd
|
Rust: Comment out tests with parse errors
|
2026-02-12 14:49:09 +01:00 |
|
Taus
|
7d17454a3b
|
Merge pull request #21138 from github/tausbn/python-prepare-for-overlay-annotations
Prepare dataflow for local annotations
|
2026-02-12 14:23:45 +01:00 |
|
Taus
|
3e5c2ddeaf
|
Merge pull request #21308 from github/smowton/admin/path-injection-use-autofix-qhelp
Python: use path-injection qhelp variant employed by autofix
|
2026-02-12 13:17:08 +01:00 |
|
Chris Smowton
|
5f970d9f2f
|
Rewordings per copilot
|
2026-02-12 12:01:33 +00:00 |
|
Simon Friis Vindum
|
218585b52a
|
Ruby: Add additonal tests with operators at the start of lines
|
2026-02-12 12:30:43 +01:00 |
|
Anders Schack-Mulligen
|
a945f15987
|
Merge pull request #21317 from aschackmull/java/deprecate-unreachableblocks
Java: Deprecate UnreachableBlocks.
|
2026-02-12 11:43:37 +01:00 |
|
Anders Schack-Mulligen
|
5c53677051
|
Java: Deprecate UnreachableBlocks.
|
2026-02-12 11:06:34 +01:00 |
|
Mathias Vorreiter Pedersen
|
2dc91a56eb
|
C++: Lower the treshold for max number of bounds to 2^29.
|
2026-02-12 09:44:20 +00:00 |
|
Mathias Vorreiter Pedersen
|
6dd6bddff3
|
C++: Add more terms to make range analysis test timeout.
|
2026-02-12 09:44:17 +00:00 |
|
Mathias Vorreiter Pedersen
|
a4dd4f91d4
|
C++: Also compute type bounds for accesses of an enum type.
|
2026-02-12 09:44:14 +00:00 |
|
Mathias Vorreiter Pedersen
|
90a16cfaee
|
Merge pull request #21314 from MathiasVP/remove-tc
C++: Remove redundant transitive closure
|
2026-02-12 09:21:56 +00:00 |
|
Simon Friis Vindum
|
a27d20dbcd
|
Rust: Add test cases for binary operator at start of line
|
2026-02-12 09:31:59 +01:00 |
|
Michael Nebel
|
76ed386246
|
Merge pull request #21315 from github/workflow/coverage/update
Update CSV framework coverage reports
|
2026-02-12 08:29:25 +01:00 |
|
github-actions[bot]
|
fea07ebfcb
|
Add changed framework coverage reports
|
2026-02-12 00:32:08 +00:00 |
|