-
Notifications
You must be signed in to change notification settings - Fork 1.8k
Pull requests: github/codeql
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Java: add extra sink for
java/unsafe-deserialization
documentation
Java
#20025
by owen-mc
was merged Jul 11, 2025
Loading…
Shared: Improve sensitive data heuristics
documentation
javascript
Pull requests that update Javascript code
JS
Python
Ruby
Rust
Pull requests that update Rust code
Swift
#20024
by geoffw0
was merged Jul 23, 2025
Loading…
6 tasks done
C++: Better dataflow for function objects
C++
documentation
#20023
by MathiasVP
was merged Jul 11, 2025
Loading…
Rust: Type inference for pattern matching
documentation
Rust
Pull requests that update Rust code
#20020
by hvitved
was merged Jul 11, 2025
Loading…
QHelp Fix: InsecureExecutionPolicy.qhelp
C#
C++
documentation
Go
Java
JS
#20019
by ropwareJB
was closed Jul 10, 2025
Loading…
Java: Update qhelp: SnakeYaml is safe from version 2.0
documentation
Java
#20018
by owen-mc
was merged Jul 21, 2025
Loading…
C++: Add dataflow predicate for checking if a node is the final value of a parameter
C++
documentation
#20017
by jketema
was merged Jul 10, 2025
Loading…
C++: Add more thread creation models
C++
documentation
#20016
by MathiasVP
was merged Jul 10, 2025
Loading…
Rust: Fix bad join
no-change-note-required
This PR does not need a change note
Rust
Pull requests that update Rust code
#20015
by hvitved
was merged Jul 10, 2025
Loading…
C++: Do not alert on unreachable code in
cpp/incorrect-string-type-conversion
C++
documentation
#20014
by jketema
was merged Jul 11, 2025
Loading…
QL4QL: Discard predicates are always alive
QL-for-QL
#20013
by kaspersv
was merged Jul 10, 2025
Loading…
C++: Fix some typos in recent change notes
C++
documentation
#20010
by jketema
was merged Jul 10, 2025
Loading…
Bump golang.org/x/mod from 0.25.0 to 0.26.0 in /go/extractor in the extractor-dependencies group
dependencies
Pull requests that update a dependency file
Go
#20009
by dependabot
bot
was merged Jul 10, 2025
Loading…
feat: add getASupertype() predicate in ValueOrRefType.
C#
documentation
#20008
by Hug0Vincent
was merged Jul 16, 2025
Loading…
Rust: Add type inference test cases for tuples.
no-change-note-required
This PR does not need a change note
Rust
Pull requests that update Rust code
#20004
by geoffw0
was merged Jul 10, 2025
Loading…
Rust: add test cases for basic unwrapping and pattern matching
Rust
Pull requests that update Rust code
#20003
by aibaars
was merged Jul 10, 2025
Loading…
Rust: Add more test cases for sensitive data
no-change-note-required
This PR does not need a change note
Rust
Pull requests that update Rust code
#20002
by geoffw0
was merged Jul 10, 2025
Loading…
Rust: fix missing canonical paths for trait impls on builtin numeric types
no-change-note-required
This PR does not need a change note
Rust
Pull requests that update Rust code
#20001
by aibaars
was merged Jul 10, 2025
Loading…
Go: Add
Head
and Client.Head
from net/http
as request forgery sinks
documentation
Go
#20000
by owen-mc
was merged Jul 11, 2025
Loading…
Java: Add query to detect non-case labels in switch statements
documentation
Java
no-change-note-required
This PR does not need a change note
ready-for-doc-review
This PR requires and is ready for review from the GitHub docs team.
#19998
by tamasvajk
was merged Jul 10, 2025
Loading…
Rust: Adjust the inferred type of string literals
no-change-note-required
This PR does not need a change note
Rust
Pull requests that update Rust code
#19996
by hvitved
was merged Jul 8, 2025
Loading…
Rust: Disambiguate associated function calls
documentation
Rust
Pull requests that update Rust code
#19995
by hvitved
was merged Jul 10, 2025
Loading…
ProTip!
Add no:assignee to see everything that’s not assigned.