mirror of
https://github.com/github/codeql.git
synced 2025-12-17 01:03:14 +01:00
1.1 KiB
1.1 KiB
Improvements to Python analysis
The following changes in version 1.25 affect Python analysis in all applications.
General improvements
New queries
| Query | Tags | Purpose |
|---|
Changes to existing queries
| Query | Expected impact | Change |
|---|
Changes to libraries
- Importing
semmle.python.web.HttpRequestwill no longer importUntrustedStringKindtransitively.UntrustedStringKindis the most commonly used non-abstract subclass ofExternalStringKind. If not imported (by one mean or another), taint-tracking queries that concernExternalStringKindwill not produce any results. Please ensure such queries contain an explicit import (import semmle.python.security.strings.Untrusted).