-
Notifications
You must be signed in to change notification settings - Fork 2k
All issues
Issue creation is restricted in this repository
Issues
is:issue state:open
is:issue state:open
Search results
Consider testing CodeQL also against Kotlin EA versions
questionFurther information is requestedFurther information is requestedStatus: Open.#22219 In github/codeql;- Status: Open.#22218 In github/codeql;
Go: Why is DotDotCheck modeled as a complete path-injection barrier?
questionFurther information is requestedFurther information is requestedStatus: Open.#22214 In github/codeql;- Status: Open.#22213 In github/codeql;
- Status: Open.#22199 In github/codeql;
- Status: Open.#22190 In github/codeql;
Go: filepath.Clean with a prepended path separator is modeled as a path-injection sanitizer and causes false negatives
questionFurther information is requestedFurther information is requestedStatus: Open.#22185 In github/codeql;Go: DotDotReplaceAll ignores the replacement value and causes false-negative path-injection alerts
questionFurther information is requestedFurther information is requestedStatus: Open.#22184 In github/codeql;[C#] Improve "isExponentialRegex" detection logic in ReDoSQuery.qll to prevent false negatives
questionFurther information is requestedFurther information is requestedStatus: Open.#22183 In github/codeql;- Status: Open.#22144 In github/codeql;
Swift build-mode: manual — xcodebuild "Resolve Package Graph" hangs ~12 min under the build tracer (local path packages, nothing to fetch)
awaiting-responseThe CodeQL team is awaiting further input or clarification from the original reporter of this issue.The CodeQL team is awaiting further input or clarification from the original reporter of this issue.Status: Open.#22121 In github/codeql;