-
Notifications
You must be signed in to change notification settings - Fork 1.6k
Pull requests: github/codeql
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Bump esapi from 2.2.3.1 to 2.3.0.0 in /java/ql/test/utils/flowtestcasegenerator
dependencies
Pull requests that update a dependency file
Java
#11443
opened Nov 28, 2022 by
dependabot
bot
Loading…
Java: exclude parameterless static methods from This PR does not need a change note
DataFlowTargetApi
and from ExternalApi
Java
no-change-note-required
Added clarifying example for
concat
in docs
documentation
#11695
opened Dec 14, 2022 by
AryazE
Loading…
Bump spring-web from 5.3.18 to 6.0.0 in /java/ql/test/utils/flowtestcasegenerator
dependencies
Pull requests that update a dependency file
Java
#11646
opened Dec 10, 2022 by
dependabot
bot
Loading…
Bump log4j-core from 2.14.1 to 2.17.1 in /java/ql/test/utils/flowtestcasegenerator
dependencies
Pull requests that update a dependency file
Java
#11445
opened Nov 28, 2022 by
dependabot
bot
Loading…
Bump shiro-core from 1.8.0 to 1.10.0 in /java/ql/test/utils/flowtestcasegenerator
dependencies
Pull requests that update a dependency file
Java
#11444
opened Nov 28, 2022 by
dependabot
bot
Loading…
Fix
QLLexer
instance as argument to add_lexer
documentation
#11353
opened Nov 21, 2022 by
mbg
Loading…
Docs: Add note about old/unsupported VS versions
documentation
#11261
opened Nov 14, 2022 by
rdmarsh2
Loading…
RB: add second-order-command-injection
documentation
Ruby
WIP
This is a work-in-progress, do not merge yet!
#11236
opened Nov 11, 2022 by
erik-krogh
•
Draft
RB: add a step directly from a store of an instance field to a read
Ruby
#11158
opened Nov 8, 2022 by
erik-krogh
•
Draft
Java: Check whether there are internal files in the App that can be read and written by any other App
documentation
Java
#11016
opened Oct 27, 2022 by
kangr0
Loading…
Ruby: use flow-insensitive capture flow in flowsTo and type tracking
no-change-note-required
This PR does not need a change note
Ruby
Download GitHub database: fix
gh
invocation
documentation
#10923
opened Oct 21, 2022 by
dscho
Loading…
QL: recognize when this or result is only used in one side of a disjunct
QL-for-QL
#10669
opened Oct 4, 2022 by
erik-krogh
Loading…
ProTip!
What’s not been updated in a month: updated:<2025-02-09.