Commit Graph

  • fdbaba896f Use explicitFeeds directly Michael B. Gale 2026-02-27 14:25:58 +00:00
  • 8215737db9 Inline CheckFeeds Michael B. Gale 2026-02-27 14:24:55 +00:00
  • 439e37a198 Use GetReachableNuGetFeeds in CheckSpecifiedFeeds Michael B. Gale 2026-02-27 14:23:03 +00:00
  • d22381a943 Refactor GetReachableNuGetFeeds out of GetReachableFallbackNugetFeeds Michael B. Gale 2026-02-27 14:17:29 +00:00
  • 2886127535 Merge pull request #21409 from jketema/jketema/softfloat Jeroen Ketema 2026-04-28 09:47:44 +02:00
  • 81a00134aa Merge pull request #21753 from hvitved/go/most-recent-side-effect-multi-entry Tom Hvitved 2026-04-28 09:12:59 +02:00
  • cafb73a7a0 Merge pull request #21761 from github/post-release-prep/codeql-cli-2.25.3 Michael B. Gale 2026-04-27 17:23:19 +01:00
  • d5b690caf8 Apply suggestions from code review Florin Coada 2026-04-27 15:54:20 +01:00
  • 870ce1be5c Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-27 15:53:06 +01:00
  • dbd851e64d Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-27 15:52:32 +01:00
  • 81d7fc2611 Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-27 15:51:12 +01:00
  • e3fa8b031b Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-27 15:50:55 +01:00
  • 9692671213 Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-27 15:50:41 +01:00
  • 909d9cb805 Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-27 15:50:28 +01:00
  • 2e94b09e6f Address review comments Tom Hvitved 2026-04-27 14:18:41 +02:00
  • 24edae5e74 Post-release preparation for codeql-cli-2.25.3 github-actions[bot] 2026-04-27 10:27:45 +00:00
  • f1a9637d1f Merge pull request #21571 from github/henrymercer/yaml-regression-test Henry Mercer 2026-04-27 11:09:37 +01:00
  • 310c41ed3d Merge pull request #21760 from github/release-prep/2.25.3 codeql-cli/v2.25.3 Michael B. Gale 2026-04-27 11:05:42 +01:00
  • f817bd4924 Merge changelog entries for cpp/implicit-function-declaration Michael B. Gale 2026-04-20 12:24:05 +02:00
  • 03c3b3f4c4 Improve wording of actions note Michael B. Gale 2026-04-20 11:40:32 +02:00
  • 019ec0caf7 Release preparation for version 2.25.3 github-actions[bot] 2026-04-27 10:01:23 +00:00
  • 6787beb8e7 Merge pull request #21758 from github/revert-21736-release-prep/2.25.3 Michael B. Gale 2026-04-27 09:52:36 +01:00
  • 9f70f718e3 Revert "Release preparation for version 2.25.3" Michael B. Gale 2026-04-27 09:36:56 +01:00
  • a6dba9eb25 Merge branch 'main' into js/vercel-node-framework murderteeth 2026-04-25 14:19:43 -04:00
  • f15d53f3b9 Update javascript/ql/lib/change-notes/2026-04-12-vercel-node.md murderteeth 2026-04-25 14:19:01 -04:00
  • 0daefb778b Merge pull request #21755 from github/workflow/coverage/update Owen Mansel-Chan 2026-04-25 07:42:44 +01:00
  • be8c35ad8c Add changed framework coverage reports github-actions[bot] 2026-04-25 00:39:28 +00:00
  • 710c1ba050 Make getACallee overlay[global] Owen Mansel-Chan 2026-04-21 11:22:46 +01:00
  • 8e26fa1c81 Go: Avoid combinatorial explosion in mostRecentSideEffect when there are multiple entry points Tom Hvitved 2026-04-24 13:01:08 +02:00
  • 7f12fb7352 Change path where tool generate MaDs Jack Nørskov Jørgensen 2026-04-24 08:45:35 +02:00
  • a6e052b2a0 Move generated MaDs for C# into modelgenerator/ Jack Nørskov Jørgensen 2026-04-24 08:41:34 +02:00
  • 073529a951 Move generated MaDs for Rust into modelgenerator/ Jack Nørskov Jørgensen 2026-04-24 08:38:11 +02:00
  • 07cb9803f0 Move generated MaDs for CPP into modelgenerator/ Jack Nørskov Jørgensen 2026-04-24 08:35:50 +02:00
  • 6ec250951a Move generated MaDs for Java into modelgenerator/ Jack Nørskov Jørgensen 2026-04-23 14:15:11 +02:00
  • cbc12324bb Merge pull request #21703 from hvitved/rust/type-inference-sibling Tom Hvitved 2026-04-24 12:36:51 +02:00
  • 9fbe447428 Merge pull request #21749 from github/copilot/add-hibernate-sql-injection-tests Owen Mansel-Chan 2026-04-24 09:36:46 +01:00
  • f3f3ee6e81 C#: Add cs/deferenced-value-is-always-null test example for compound operators. Michael Nebel 2026-04-24 08:46:41 +02:00
  • 01baa6e3ae C#: Add tests and update expected test output. Michael Nebel 2026-04-22 15:45:01 +02:00
  • e2fcaeb46a C#: Handle compound assignment operators in the dispatch logic (and assignable definition). Michael Nebel 2026-04-22 15:43:53 +02:00
  • bdf0c8ff5a C#: Add compound assignment operator call classes. Michael Nebel 2026-04-22 15:42:35 +02:00
  • 43ebcb68f0 C#: Add upgrade- and downgrade scripts. Michael Nebel 2026-04-24 08:55:58 +02:00
  • 44dd2f008b C#: Update the DB scheme, such that compound assignment operator calls can be considered qualifiable expressions. Michael Nebel 2026-04-24 08:42:22 +02:00
  • 2729bfe379 C#: Add compound assignment operator QL classes. Michael Nebel 2026-04-22 15:41:04 +02:00
  • 13e8976494 C#: Add change-note. Michael Nebel 2026-04-22 13:07:36 +02:00
  • 8ce38a5dfb C#: Re-use the GetTargetSymbol logic from invocations to find the right operator symbol (operators can also be declared in extensions). Michael Nebel 2026-04-22 13:05:57 +02:00
  • 77f0de89ec C#: Add support for compound assignment operators in the TryGetOperatorSymbol method. Michael Nebel 2026-04-22 13:03:23 +02:00
  • ae89b2ee79 Merge pull request #21747 from jketema/join-order Jeroen Ketema 2026-04-24 08:05:24 +02:00
  • 82c99a594d Merge pull request #21750 from github/fix-join-in-assertions-in-ir Mathias Vorreiter Pedersen 2026-04-23 17:25:15 +01:00
  • 083909ee3b Add Java change note for Hibernate sinks copilot-swe-agent[bot] 2026-04-23 14:10:29 +00:00
  • a367294c23 Merge branch 'main' into copilot/automate-go-version-updates-again copilot/automate-go-version-updates-again Owen Mansel-Chan 2026-04-23 14:41:46 +01:00
  • 25d232b815 Model additional Hibernate query sinks copilot-swe-agent[bot] 2026-04-23 13:41:03 +00:00
  • c64223ae56 Merge pull request #21748 from hvitved/shared/remove-deprecated Tom Hvitved 2026-04-23 14:44:17 +02:00
  • cb21044900 Merge pull request #21744 from aschackmull/csharp/ssa Anders Schack-Mulligen 2026-04-23 14:39:54 +02:00
  • eee5b067b3 Merge pull request #21743 from hvitved/cfg/body-parts Tom Hvitved 2026-04-23 14:10:46 +02:00
  • 14efb4502b C++: Fix join in getVariable. Mathias Vorreiter Pedersen 2026-04-23 12:10:09 +01:00
  • bf960b8c76 Merge pull request #21652 from MarkLee131/fix/path-injection-torealpath Owen Mansel-Chan 2026-04-23 11:18:23 +01:00
  • 081ad03b4b Add Hibernate SQL injection sink tests copilot-swe-agent[bot] 2026-04-23 10:04:52 +00:00
  • 7b897add22 Initial plan copilot-swe-agent[bot] 2026-04-23 09:50:34 +00:00
  • 9f19791d8c Merge branch 'main' into fix/path-injection-torealpath Owen Mansel-Chan 2026-04-23 10:40:47 +01:00
  • 61f1ef877f Swift: Remove deprecated references to deprecated shared code Tom Hvitved 2026-04-23 11:29:10 +02:00
  • 18da5f61cd Ruby: Remove deprecated references to deprecated shared code Tom Hvitved 2026-04-23 11:29:04 +02:00
  • 14dd72b3b1 C#: Remove deprecated references to deprecated shared code Tom Hvitved 2026-04-23 11:28:33 +02:00
  • 90ae086822 Shared: Remove deprecated code Tom Hvitved 2026-04-23 11:07:14 +02:00
  • 1a84b2b555 CFG: Use dense ranking Tom Hvitved 2026-04-23 10:01:04 +02:00
  • 076b020dc4 Fix two QualifiedName join orders Jeroen Ketema 2026-04-23 10:37:12 +02:00
  • f50bbdb9af C++: Update expected test results after extractor changes Jeroen Ketema 2026-01-08 18:01:06 +01:00
  • 68bacb47cc Bump rules_cc from 0.2.17 to 0.2.18 dependabot/bazel/rules_cc-0.2.18 dependabot[bot] 2026-04-23 03:07:51 +00:00
  • 71fa2166ee Apply suggestions from code review Tom Hvitved 2026-04-22 17:06:31 +02:00
  • d6abd4c72d Merge pull request #21745 from owen-mc/go/refactor-encryption-operation Owen Mansel-Chan 2026-04-22 15:46:49 +01:00
  • 57eaed4dcc Refactor: remove fields from EncryptionOperation Owen Mansel-Chan 2026-04-22 13:37:35 +01:00
  • 6ebf4ee394 Java: Adapt to changes in CFG library Tom Hvitved 2026-04-22 13:17:40 +02:00
  • 39cd86a48e C#: Move handling of callables into shared control flow library Tom Hvitved 2026-04-22 13:12:08 +02:00
  • 4b8e4b40af C#: Fix test. Anders Schack-Mulligen 2026-04-22 14:00:13 +02:00
  • e60275c4de Rust: Refine implSiblings Tom Hvitved 2026-03-27 11:50:37 +01:00
  • b0c31badc2 C#: Bugfix for multi-body baseSsa entry defs. Anders Schack-Mulligen 2026-04-17 15:10:35 +02:00
  • ae7904f0c8 C#: Fix BaseSSA caching. Anders Schack-Mulligen 2026-04-17 14:32:40 +02:00
  • bbd60031b1 C#: Replace references to old BaseSSA classes. Anders Schack-Mulligen 2026-04-16 13:58:21 +02:00
  • 145d3242a6 C#: Instantiate shared SSA wrappers for BaseSSA. Anders Schack-Mulligen 2026-04-16 13:30:47 +02:00
  • bca51a986c Merge pull request #21612 from michaelnebel/csharp/legacyasptaintedmember Michael Nebel 2026-04-22 09:28:27 +02:00
  • 62f15d0166 Merge pull request #21742 from owen-mc/docs/fixes Owen Mansel-Chan 2026-04-21 17:40:11 +01:00
  • a44883486a Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-21 16:44:12 +01:00
  • 0866e8dc21 Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-21 16:43:59 +01:00
  • d60a30d1f2 Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-21 16:43:40 +01:00
  • da88268943 Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-21 16:43:25 +01:00
  • af32ae2ba5 Update docs/codeql/codeql-language-guides/customizing-library-models-for-rust.rst Florin Coada 2026-04-21 16:42:41 +01:00
  • b47afafe8e Fix duplicated quotation mark Owen Mansel-Chan 2026-04-21 14:53:11 +01:00
  • 3a13f77058 Fix typo "passd" -> "passed" Owen Mansel-Chan 2026-04-21 14:52:48 +01:00
  • 424b7decb1 Fix wrong parameter name Owen Mansel-Chan 2026-04-21 14:52:22 +01:00
  • 91f9f23138 Fix wrong function name Owen Mansel-Chan 2026-04-21 14:52:10 +01:00
  • f912731cd4 Merge pull request #21565 from aschackmull/csharp/cfg2 Anders Schack-Mulligen 2026-04-21 15:50:38 +02:00
  • af794ed3c0 Merge branch 'main' into fix/trust-boundary-regexp-barrier Kaixuan Li 2026-04-21 23:01:06 +10:00
  • 07e97e20d8 Merge branch 'github:main' into fix/path-injection-read-subkind Kaixuan Li 2026-04-21 22:59:53 +10:00
  • 6efb21314a Merge pull request #21523 from owen-mc/docs/mad/barriers Owen Mansel-Chan 2026-04-21 13:49:19 +01:00
  • c91b5b3c2e Merge pull request #21650 from MarkLee131/fix/sensitive-log-fp-regex Owen Mansel-Chan 2026-04-21 13:48:32 +01:00
  • 8b93ce2747 C#: Add ASP.NET test case for a collection type. Michael Nebel 2026-04-21 14:07:22 +02:00
  • 2d6197fd7d C#: Generalize ASP.NET taint members to collection types. Michael Nebel 2026-04-21 14:06:36 +02:00
  • f826262f1d C#: Re-factor CollectionType into an abstract class and introduce getElementType predicate. Michael Nebel 2026-04-21 13:36:43 +02:00
  • 6d10b1582f Java: update regression-test expectations for path-injection[read] MarkLee131 2026-04-21 19:45:13 +08:00
  • 1055084305 C#: Address review comments. Michael Nebel 2026-04-01 13:23:06 +02:00
  • dc0e7d4988 C#: Add change-note. Michael Nebel 2026-04-01 11:23:12 +02:00