mirror of
https://github.com/github/codeql.git
synced 2026-05-16 04:09:27 +02:00
Compare commits
10 Commits
codeql-cli
...
codeql-cli
| Author | SHA1 | Date | |
|---|---|---|---|
|
|
dd283a7498 | ||
|
|
f0a6cf15e1 | ||
|
|
cad0637109 | ||
|
|
c07d13a967 | ||
|
|
8eb66f484d | ||
|
|
5b313e11bb | ||
|
|
cebfd6dd15 | ||
|
|
5a2aa45c54 | ||
|
|
cd3eb68a36 | ||
|
|
f733a48b0b |
@@ -0,0 +1,7 @@
|
||||
---
|
||||
category: feature
|
||||
tags: [lgtm,codescanning]
|
||||
---
|
||||
* The QL library `semmle.code.cpp.commons.Exclusions` now contains a predicate
|
||||
`isFromSystemMacroDefinition` for identifying code that originates from a
|
||||
macro outside the project being analyzed.
|
||||
2
cpp/ql/lib/codeql-pack.release.yml
Normal file
2
cpp/ql/lib/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,7 +1,8 @@
|
||||
name: codeql/cpp-all
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: cpp
|
||||
dbscheme: semmlecode.cpp.dbscheme
|
||||
extractor: cpp
|
||||
library: true
|
||||
dependencies:
|
||||
codeql/cpp-upgrades: 0.0.2
|
||||
codeql/cpp-upgrades: 0.0.3
|
||||
|
||||
5
cpp/ql/src/change-notes/2021-11-09-use-of-http.md
Normal file
5
cpp/ql/src/change-notes/2021-11-09-use-of-http.md
Normal file
@@ -0,0 +1,5 @@
|
||||
---
|
||||
category: newQuery
|
||||
tags: [lgtm,codescanning]
|
||||
---
|
||||
* A new query `cpp/non-https-url` has been added for C/C++. The query flags uses of `http` URLs that might be better replaced with `https`.
|
||||
2
cpp/ql/src/codeql-pack.release.yml
Normal file
2
cpp/ql/src/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,5 +1,6 @@
|
||||
name: codeql/cpp-queries
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: cpp
|
||||
dependencies:
|
||||
codeql/cpp-all: "*"
|
||||
codeql/suite-helpers: "*"
|
||||
|
||||
@@ -1,5 +1,5 @@
|
||||
name: codeql/cpp-tests
|
||||
version: 0.0.2
|
||||
groups: [cpp, test]
|
||||
dependencies:
|
||||
codeql/cpp-all: "*"
|
||||
codeql/cpp-queries: "*"
|
||||
|
||||
2
cpp/upgrades/codeql-pack.release.yml
Normal file
2
cpp/upgrades/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,4 +1,5 @@
|
||||
name: codeql/cpp-upgrades
|
||||
version: 0.0.3
|
||||
groups: cpp
|
||||
upgrades: .
|
||||
version: 0.0.2
|
||||
library: true
|
||||
|
||||
2
csharp/ql/lib/codeql-pack.release.yml
Normal file
2
csharp/ql/lib/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,7 +1,8 @@
|
||||
name: codeql/csharp-all
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: csharp
|
||||
dbscheme: semmlecode.csharp.dbscheme
|
||||
extractor: csharp
|
||||
library: true
|
||||
dependencies:
|
||||
codeql/csharp-upgrades: 0.0.2
|
||||
codeql/csharp-upgrades: 0.0.3
|
||||
|
||||
2
csharp/ql/src/codeql-pack.release.yml
Normal file
2
csharp/ql/src/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,5 +1,6 @@
|
||||
name: codeql/csharp-queries
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: csharp
|
||||
suites: codeql-suites
|
||||
extractor: csharp
|
||||
defaultSuiteFile: codeql-suites/csharp-code-scanning.qls
|
||||
|
||||
@@ -1,5 +1,5 @@
|
||||
name: codeql-csharp-tests
|
||||
version: 0.0.2
|
||||
groups: [csharp, test]
|
||||
dependencies:
|
||||
codeql/csharp-all: "*"
|
||||
codeql/csharp-queries: "*"
|
||||
|
||||
2
csharp/upgrades/codeql-pack.release.yml
Normal file
2
csharp/upgrades/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,4 +1,5 @@
|
||||
name: codeql/csharp-upgrades
|
||||
upgrades: .
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: csharp
|
||||
library: true
|
||||
upgrades: .
|
||||
|
||||
2
java/ql/lib/codeql-pack.release.yml
Normal file
2
java/ql/lib/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,7 +1,8 @@
|
||||
name: codeql/java-all
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: java
|
||||
library: true
|
||||
dbscheme: config/semmlecode.dbscheme
|
||||
extractor: java
|
||||
library: true
|
||||
dependencies:
|
||||
codeql/java-upgrades: 0.0.2
|
||||
codeql/java-upgrades: 0.0.3
|
||||
|
||||
2
java/ql/src/codeql-pack.release.yml
Normal file
2
java/ql/src/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,5 +1,6 @@
|
||||
name: codeql/java-queries
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: java
|
||||
suites: codeql-suites
|
||||
extractor: java
|
||||
defaultSuiteFile: codeql-suites/java-code-scanning.qls
|
||||
|
||||
@@ -1,5 +1,5 @@
|
||||
name: codeql/java-tests
|
||||
version: 0.0.2
|
||||
groups: [java, test]
|
||||
dependencies:
|
||||
codeql/java-all: "*"
|
||||
codeql/java-queries: "*"
|
||||
|
||||
2
java/upgrades/codeql-pack.release.yml
Normal file
2
java/upgrades/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,4 +1,5 @@
|
||||
name: codeql/java-upgrades
|
||||
upgrades: .
|
||||
version: 0.0.3
|
||||
groups: java
|
||||
library: true
|
||||
version: 0.0.2
|
||||
upgrades: .
|
||||
|
||||
2
javascript/ql/lib/codeql-pack.release.yml
Normal file
2
javascript/ql/lib/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.4
|
||||
@@ -1,7 +1,8 @@
|
||||
name: codeql/javascript-all
|
||||
version: 0.0.3
|
||||
version: 0.0.4
|
||||
groups: javascript
|
||||
library: true
|
||||
dbscheme: semmlecode.javascript.dbscheme
|
||||
extractor: javascript
|
||||
library: true
|
||||
dependencies:
|
||||
codeql/javascript-upgrades: 0.0.3
|
||||
codeql/javascript-upgrades: 0.0.4
|
||||
|
||||
@@ -0,0 +1,5 @@
|
||||
---
|
||||
category: newQuery
|
||||
tags: [lgtm, codescanning]
|
||||
---
|
||||
* The `js/insufficient-key-size` query has been added. It highlights the creation of cryptographic keys with a short key size.
|
||||
@@ -0,0 +1,5 @@
|
||||
---
|
||||
category: newQuery
|
||||
tags: [lgtm, codescanning]
|
||||
---
|
||||
* The `js/session-fixation` query has been added. It highlights servers that reuse a session after a user has logged in.
|
||||
@@ -0,0 +1,5 @@
|
||||
---
|
||||
category: newQuery
|
||||
tags: [lgtm, codescanning]
|
||||
---
|
||||
* The `js/sensitive-get-query` query has been added. It highlights GET requests that read sensitive information from the query string.
|
||||
2
javascript/ql/src/codeql-pack.release.yml
Normal file
2
javascript/ql/src/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.4
|
||||
@@ -1,5 +1,6 @@
|
||||
name: codeql/javascript-queries
|
||||
version: 0.0.3
|
||||
version: 0.0.4
|
||||
groups: javascript
|
||||
suites: codeql-suites
|
||||
extractor: javascript
|
||||
defaultSuiteFile: codeql-suites/javascript-code-scanning.qls
|
||||
|
||||
@@ -1,5 +1,6 @@
|
||||
name: codeql/javascript-tests
|
||||
version: 0.0.3
|
||||
version: 0.0.4
|
||||
groups: [javascript, test]
|
||||
dependencies:
|
||||
codeql/javascript-all: "*"
|
||||
codeql/javascript-queries: "*"
|
||||
|
||||
2
javascript/upgrades/codeql-pack.release.yml
Normal file
2
javascript/upgrades/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.4
|
||||
@@ -1,4 +1,5 @@
|
||||
name: codeql/javascript-upgrades
|
||||
upgrades: .
|
||||
version: 0.0.4
|
||||
groups: java
|
||||
library: true
|
||||
version: 0.0.3
|
||||
upgrades: .
|
||||
|
||||
2
misc/suite-helpers/codeql-pack.release.yml
Normal file
2
misc/suite-helpers/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,2 +1,3 @@
|
||||
name: codeql/suite-helpers
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: shared
|
||||
|
||||
5
python/ql/lib/change-notes/2021-11-02-flask_admin.md
Normal file
5
python/ql/lib/change-notes/2021-11-02-flask_admin.md
Normal file
@@ -0,0 +1,5 @@
|
||||
---
|
||||
category: majorAnalysis
|
||||
tags: [lgtm, codescanning]
|
||||
---
|
||||
* Added modeling of HTTP requests and responses when using `flask_admin` (`Flask-Admin` PyPI package), which leads to additional remote flow sources.
|
||||
5
python/ql/lib/change-notes/2021-11-02-toml.md
Normal file
5
python/ql/lib/change-notes/2021-11-02-toml.md
Normal file
@@ -0,0 +1,5 @@
|
||||
---
|
||||
category: majorAnalysis
|
||||
tags: [lgtm, codescanning]
|
||||
---
|
||||
* Added modeling of the PyPI package `toml`, which provides encoding/decoding of TOML documents, leading to new taint-tracking steps.
|
||||
5
python/ql/lib/change-notes/2021-11-09-model-aiopg.md
Normal file
5
python/ql/lib/change-notes/2021-11-09-model-aiopg.md
Normal file
@@ -0,0 +1,5 @@
|
||||
---
|
||||
category: majorAnalysis
|
||||
tags: [lgtm, codescanning]
|
||||
---
|
||||
* Added modeling of `aiopg` for sinks executing SQL.
|
||||
2
python/ql/lib/codeql-pack.release.yml
Normal file
2
python/ql/lib/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,7 +1,8 @@
|
||||
name: codeql/python-all
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: python
|
||||
library: true
|
||||
dbscheme: semmlecode.python.dbscheme
|
||||
extractor: python
|
||||
library: true
|
||||
dependencies:
|
||||
codeql/python-upgrades: 0.0.2
|
||||
codeql/python-upgrades: 0.0.3
|
||||
|
||||
2
python/ql/src/codeql-pack.release.yml
Normal file
2
python/ql/src/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,5 +1,6 @@
|
||||
name: codeql/python-queries
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: python
|
||||
dependencies:
|
||||
codeql/python-all: "*"
|
||||
codeql/suite-helpers: "*"
|
||||
|
||||
@@ -1,5 +1,5 @@
|
||||
name: codeql/python-tests
|
||||
version: 0.0.2
|
||||
groups: [python, test]
|
||||
dependencies:
|
||||
codeql/python-all: "*"
|
||||
codeql/python-queries: "*"
|
||||
|
||||
2
python/upgrades/codeql-pack.release.yml
Normal file
2
python/upgrades/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,4 +1,5 @@
|
||||
name: codeql/python-upgrades
|
||||
upgrades: .
|
||||
version: 0.0.3
|
||||
groups: python
|
||||
library: true
|
||||
version: 0.0.2
|
||||
upgrades: .
|
||||
|
||||
2
ruby/ql/lib/codeql-pack.release.yml
Normal file
2
ruby/ql/lib/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,6 +1,7 @@
|
||||
name: codeql/ruby-all
|
||||
version: 0.0.2
|
||||
extractor: ruby
|
||||
dbscheme: ruby.dbscheme
|
||||
upgrades: upgrades
|
||||
version: 0.0.3
|
||||
groups: ruby
|
||||
library: true
|
||||
dbscheme: ruby.dbscheme
|
||||
extractor: ruby
|
||||
upgrades: upgrades
|
||||
|
||||
@@ -0,0 +1,5 @@
|
||||
---
|
||||
category: queryMetadata
|
||||
tags: [lgtm, codescanning]
|
||||
---
|
||||
* The precision of "Hard-coded credentials" (`rb/hardcoded-credentials`) has been decreased from "high" to "medium". This query will no longer be run and displayed by default on Code Scanning and LGTM.
|
||||
2
ruby/ql/src/codeql-pack.release.yml
Normal file
2
ruby/ql/src/codeql-pack.release.yml
Normal file
@@ -0,0 +1,2 @@
|
||||
---
|
||||
lastReleaseVersion: 0.0.3
|
||||
@@ -1,5 +1,6 @@
|
||||
name: codeql/ruby-queries
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: ruby
|
||||
suites: codeql-suites
|
||||
defaultSuiteFile: codeql-suites/ruby-code-scanning.qls
|
||||
dependencies:
|
||||
|
||||
@@ -1,8 +1,9 @@
|
||||
name: codeql/ruby-tests
|
||||
version: 0.0.2
|
||||
version: 0.0.3
|
||||
groups: [ruby, test]
|
||||
dependencies:
|
||||
codeql/ruby-queries: ^0.0.2
|
||||
codeql/ruby-examples: ^0.0.2
|
||||
codeql/ruby-all: ^0.0.2
|
||||
codeql/ruby-queries: "*"
|
||||
codeql/ruby-examples: "*"
|
||||
codeql/ruby-all: "*"
|
||||
extractor: ruby
|
||||
tests: .
|
||||
|
||||
Reference in New Issue
Block a user