Michael Nebel
|
cdd8aa49e1
|
Merge pull request #20933 from michaelnebel/csharp/runtraceraftercompilation
C#: Invoke the extractor after the compiler to ensure that source generators have been executed.
|
2025-12-04 13:41:38 +01:00 |
|
Anders Schack-Mulligen
|
607ad1f886
|
Merge pull request #20961 from aschackmull/dataflow/flowfrom
Dataflow: Add flowFrom predicates to mirror flowTo.
|
2025-12-04 10:09:29 +01:00 |
|
Michael Nebel
|
e74031bee4
|
Merge pull request #20936 from michaelnebel/csharp/nocrashdotnetinfo
C#: Retry logic for `dotnet --info` when it fails with exit code 143.
|
2025-12-04 09:13:12 +01:00 |
|
Geoffrey White
|
2665d8395a
|
Merge pull request #20939 from geoffw0/saltmodel
Rust: Add heuristic sinks for passwords, initialization vectors etc
|
2025-12-03 18:01:48 +00:00 |
|
Tom Hvitved
|
ca9d327280
|
Merge pull request #20915 from hvitved/content-flow-ap-limit
Shared: Improvements to content-sensitive model generation
|
2025-12-03 15:54:57 +01:00 |
|
Michael Nebel
|
a903420122
|
C#: Add change note.
|
2025-12-03 15:49:37 +01:00 |
|
Michael Nebel
|
0d08f24a2d
|
C#: Invoke the extractor after the compiler to ensure that source generators have been executed.
|
2025-12-03 15:49:35 +01:00 |
|
yoff
|
7fd4755e93
|
Merge pull request #20919 from yoff/python/header-splitting-experiments
Python: detecting header splitting in synthetic app
|
2025-12-03 15:48:54 +01:00 |
|
Tom Hvitved
|
3ba256a72a
|
C#/Java: Go back to access path limit 2
|
2025-12-03 15:05:02 +01:00 |
|
Anders Schack-Mulligen
|
78e1879c9e
|
Use more flowTo.
|
2025-12-03 14:12:08 +01:00 |
|
Anders Schack-Mulligen
|
dc6d3fe7ba
|
Use flowFrom.
|
2025-12-03 14:04:18 +01:00 |
|
Anders Schack-Mulligen
|
4191b18410
|
Dataflow: Add flowFrom predicates to mirror flowTo.
|
2025-12-03 13:46:44 +01:00 |
|
Michael Nebel
|
c1793ab529
|
C#: Code quality improvement.
|
2025-12-03 11:48:32 +01:00 |
|
Paolo Tranquilli
|
5784a216a2
|
Merge pull request #20810 from github/redsun82/update-bazel
Bazel: update to 8.4.2
|
2025-12-03 11:45:38 +01:00 |
|
Geoffrey White
|
3028e5dac0
|
Rust: CallExpr -> Call.
|
2025-12-02 17:31:35 +00:00 |
|
Michael Nebel
|
3197b50da7
|
C#: Address review comments.
|
2025-12-02 16:16:29 +01:00 |
|
Michael Nebel
|
1d9b88de8b
|
C#: Comment back in the .NET 10 tests.
|
2025-12-02 14:59:45 +01:00 |
|
Michael Nebel
|
4a6ae216a4
|
C#: Gracefully handle non-zero exitcodes for dotnet --info.
|
2025-12-02 14:42:00 +01:00 |
|
Owen Mansel-Chan
|
e52f819df0
|
Merge pull request #20949 from owen-mc/go/reinstate-dummy-test
Go: Reinstate dummy test so consistency tests are run
|
2025-12-02 12:55:36 +00:00 |
|
Owen Mansel-Chan
|
e9cb183670
|
Revert "Delete dummy.ql for now"
This reverts commit 38cb6e5a00.
|
2025-12-02 11:41:39 +00:00 |
|
Owen Mansel-Chan
|
848677e580
|
Merge pull request #20917 from owen-mc/go/enable-data-flow-consistency-checks
Go: enable data flow consistency checks
|
2025-12-02 10:52:47 +00:00 |
|
Tom Hvitved
|
666855dbd7
|
Shared: Improvements to content-sensitive model generation
|
2025-12-01 21:23:14 +01:00 |
|
Tom Hvitved
|
464d2cd5fc
|
Merge pull request #20891 from hvitved/rust/data-flow-implicit-deref-borrow
Rust: Improve handling of implicit derefs/borrows in data flow
|
2025-12-01 19:03:55 +01:00 |
|
Florin Coada
|
d41a2d475b
|
Merge pull request #20927 from github/changedocs/2.23.6
Add changelog entry for CodeQL CLI version 2.23.6
|
2025-12-01 13:55:33 +00:00 |
|
Simon Friis Vindum
|
87d6a60814
|
Merge pull request #20924 from paldepind/rust/struct-field-tostring
Rust: Implement `toString` for struct fields and visibility
|
2025-12-01 14:52:23 +01:00 |
|
Geoffrey White
|
c64f19f6eb
|
Rust: Change note.
|
2025-12-01 12:39:19 +00:00 |
|
Geoffrey White
|
450403883b
|
Rust: Add test cases for a small number of FPs we see.
|
2025-12-01 12:39:18 +00:00 |
|
Geoffrey White
|
e834e8665a
|
Rust: Remove one of the cases that is causing FP results in MRVA.
|
2025-12-01 12:39:16 +00:00 |
|
Geoffrey White
|
faf69b821b
|
Rust: Add sinks as barriers to prevent duplicate results.
|
2025-12-01 12:39:13 +00:00 |
|
Geoffrey White
|
bb50e9fb40
|
Rust: Add heuristic sinks for rust/hard-coded-cryptographic-value.
|
2025-12-01 12:39:12 +00:00 |
|
Tom Hvitved
|
6ddb9c784c
|
Merge pull request #20853 from hvitved/rust/path-resolution-impl-self
Rust: Refine `Self` resolution inside `impl` blocks
|
2025-12-01 12:50:30 +01:00 |
|
Tom Hvitved
|
4bfe1a81dc
|
Rust: Update expected test output following rebase
|
2025-12-01 11:38:50 +01:00 |
|
Tom Hvitved
|
d8177274a8
|
Rust: Improve handling of deref expressions in data flow
|
2025-12-01 11:34:06 +01:00 |
|
Tom Hvitved
|
4255f7f560
|
Address review comments
|
2025-12-01 11:34:03 +01:00 |
|
Tom Hvitved
|
6b003580d1
|
Rust: Improve handling of implicit derefs/borrows in data flow
|
2025-12-01 11:34:01 +01:00 |
|
Tom Hvitved
|
9b25a3112d
|
Rust: Use TaintFlow instead of ValueFlow in tests
|
2025-12-01 11:33:57 +01:00 |
|
Tom Hvitved
|
d45f8f7236
|
Rust: Document overlapping function resoltion with test cases
|
2025-12-01 11:16:15 +01:00 |
|
Simon Friis Vindum
|
1fe7e2ec45
|
Rust: Change concat to strictconcat
|
2025-12-01 10:35:43 +01:00 |
|
Asger F
|
b8cff77cab
|
Merge pull request #20873 from github/shared-xml-discard
Share XML discard predicates
|
2025-12-01 10:06:02 +01:00 |
|
Tom Hvitved
|
34f3892c35
|
Rust: Extend Self resolution logic to all item kinds
|
2025-12-01 09:58:27 +01:00 |
|
Tom Hvitved
|
250d15aef2
|
Rust: More path resolution tests
|
2025-12-01 09:54:22 +01:00 |
|
Tom Hvitved
|
77df65f2bc
|
Address review comment
|
2025-12-01 09:07:47 +01:00 |
|
Paolo Tranquilli
|
50929ef566
|
Merge pull request #20872 from github/redsun82/update-fmt
Swift: update `fmt`
|
2025-12-01 08:23:48 +01:00 |
|
Geoffrey White
|
8e099480ab
|
Rust: Add tests for heuristics.
|
2025-11-28 18:02:41 +00:00 |
|
Michael Nebel
|
1d56f17059
|
Merge pull request #20935 from michaelnebel/csharp/flakynet10
C#: Pin tests and disable .NET 10 tests.
|
2025-11-28 15:29:27 +01:00 |
|
Idriss Riouak
|
9fd31bf685
|
Merge pull request #20909 from github/idrissrio/cpp/overlay/overlay.qll
C/C++ overlay: Add basic `Overlay.qll` file
|
2025-11-28 15:09:39 +01:00 |
|
Michael Nebel
|
6c9d15879f
|
C#: Skip .NET 10 tests for now.
|
2025-11-28 14:20:06 +01:00 |
|
idrissrio
|
4ad25e4d92
|
C/C++ overlay: Address review comments
|
2025-11-28 14:16:10 +01:00 |
|
Michael Nebel
|
af41ca0b1c
|
C#: Fix syntax error.
|
2025-11-28 14:13:17 +01:00 |
|
Michael Nebel
|
a69e78185b
|
C#: Pin tests and mark .NET 10 tests as flaky.
|
2025-11-28 13:59:30 +01:00 |
|