Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / advanced-security/codeql-queries issues and pull requests

#87 - Javascript: insecure IV creation in Node 'crypto' library

Pull Request - State: closed - Opened by aegilops almost 2 years ago

#86 - Adding SQL Injection audit query

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago
Labels: python

#85 - Updated markdown

Pull Request - State: closed - Opened by aegilops almost 2 years ago

#84 - Move configs to lib, make testing versions

Pull Request - State: closed - Opened by aegilops almost 2 years ago

#83 - Unpinned Actions step query (not a SHA hash)

Pull Request - State: closed - Opened by aegilops almost 2 years ago - 3 comments

#82 - Auto-updated submodule references: Bump codeql from `a520de3` to `70b85a3`

Pull Request - State: closed - Opened by dependabot[bot] almost 2 years ago - 2 comments
Labels: dependencies

#81 - Auto-updated submodule references: Bump codeql from `a520de3` to `a45a0ee`

Pull Request - State: closed - Opened by dependabot[bot] almost 2 years ago - 1 comment
Labels: dependencies

#80 - Fix submodule workflow

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago

#79 - csharp - Add PRECISION: LOW security queries to super extended

Pull Request - State: closed - Opened by felickz almost 2 years ago

#78 - Add low queries

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago
Labels: enhancement, python

#77 - Add 4 CSharp Audit Queries

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago
Labels: enhancement, csharp

#76 - Small updates

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago
Labels: documentation

#75 - Add Audit Config

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago

#74 - Python Audit Suite and Queries

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago
Labels: python

#73 - Generate report tasks and small update to gen coverage

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago

#72 - JS Audit Suite

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago

#71 - Update build to add suite checking

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago

#70 - Update CMDi Audit query and tests

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago - 1 comment
Labels: python

#69 - Update coverage script and reports

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago

#68 - Update Python audit queries & update README

Pull Request - State: closed - Opened by GeekMasher almost 2 years ago - 1 comment
Labels: enhancement, python

#67 - Remove debugging queries from Python suite

Pull Request - State: closed - Opened by GeekMasher about 2 years ago - 1 comment

#66 - Include new path-injection query into `java` custom suite

Pull Request - State: closed - Opened by felickz about 2 years ago

#65 - Add better Local Sources and new tainted path query

Pull Request - State: closed - Opened by GeekMasher about 2 years ago

#64 - Add better support for Hardcoded Secret query

Pull Request - State: closed - Opened by GeekMasher about 2 years ago - 1 comment
Labels: python

#63 - JavaScript React XSS Heuristic Query

Pull Request - State: closed - Opened by GeekMasher about 2 years ago

#62 - Update Mass Assignment Remote Test

Pull Request - State: closed - Opened by GeekMasher about 2 years ago

#61 - Add Debugging Partial Path Queries for Python

Pull Request - State: closed - Opened by GeekMasher about 2 years ago - 1 comment

#60 - Python format string

Pull Request - State: closed - Opened by aegilops about 2 years ago

#59 - Local XXE queries for Python (CWE-611)

Pull Request - State: closed - Opened by aegilops about 2 years ago - 1 comment

#58 - Experimental suite for Java

Pull Request - State: closed - Opened by aegilops about 2 years ago

#57 - Submodule updates

Pull Request - State: closed - Opened by GeekMasher about 2 years ago - 1 comment

#56 - Updating QL pack files to use `dependencies` key

Pull Request - State: closed - Opened by aegilops about 2 years ago
Labels: enhancement, python

#55 - Patch 1

Pull Request - State: closed - Opened by BobbyDigitz about 2 years ago

#53 - Update codeql-csharp.qls

Pull Request - State: closed - Opened by GeekMasher over 2 years ago

#52 - JS: Update to Eval Query

Pull Request - State: closed - Opened by GeekMasher over 2 years ago
Labels: enhancement, javascript

#51 - Python: Mass Assignment

Pull Request - State: closed - Opened by GeekMasher over 2 years ago - 1 comment

#50 - Java: Hardcoded base64 usage

Pull Request - State: closed - Opened by GeekMasher over 2 years ago - 1 comment
Labels: enhancement, java

#49 - Update CodeQL

Pull Request - State: closed - Opened by GeekMasher over 2 years ago
Labels: enhancement

#48 - Update all queries to use new APIs

Pull Request - State: closed - Opened by GeekMasher over 2 years ago - 4 comments
Labels: enhancement, python

#47 - Add config file for disabling default queries.

Pull Request - State: closed - Opened by zbazztian over 2 years ago - 2 comments

#46 - Java: Better support tracking through exception's / throwable's

Pull Request - State: closed - Opened by GeekMasher over 2 years ago - 2 comments

#45 - Add custom tailor pack

Pull Request - State: closed - Opened by zbazztian over 2 years ago - 4 comments

#44 - Python: Updated and add tests for Hardcoded Passwords

Pull Request - State: closed - Opened by GeekMasher over 2 years ago - 2 comments
Labels: python

#43 - Update update-submodules.yml

Pull Request - State: closed - Opened by GeekMasher over 2 years ago
Labels: enhancement

#42 - Update unit testing Action steps

Pull Request - State: closed - Opened by GeekMasher over 2 years ago
Labels: enhancement

#41 - Update XXELocal source to SafeSaxSource

Pull Request - State: closed - Opened by GeekMasher over 2 years ago
Labels: java

#40 - Local Sources test cases and False Positives with `tempfile`

Pull Request - State: closed - Opened by GeekMasher over 2 years ago
Labels: python

#39 - Create XSS React query and tests

Pull Request - State: closed - Opened by GeekMasher over 2 years ago

#38 - Add LocalSources Support for future Go Queries

Pull Request - State: closed - Opened by securingdev over 2 years ago - 4 comments
Labels: go

#37 - Python improvements and unit tests

Pull Request - State: closed - Opened by GeekMasher over 2 years ago

#36 - Add argparse support

Pull Request - State: closed - Opened by securingdev almost 3 years ago

#35 - Update Actions

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#34 - Cs/crypto tests

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#33 - All queries

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago - 1 comment

#32 - CSharp Crypto Queries

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago - 2 comments
Labels: csharp

#31 - Query for CVE-2022-23631

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#30 - Add Codespaces support

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#29 - Static queries for Python

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#28 - Add Weak HMac query

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#27 - Create CODEOWNERS

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#26 - Create LICENSE

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#25 - Fix `WeakHashingAlgorithms.ql` for Python

Pull Request - State: closed - Opened by RasmusWL almost 3 years ago

#24 - Remove `paths` from CodeQL config.yml

Pull Request - State: closed - Opened by RasmusWL almost 3 years ago - 1 comment

#23 - Python XXE

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago - 10 comments
Labels: python

#22 - CodeQL Bundle Creation and Automation

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago - 1 comment

#21 - Java- XXE local variant

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#20 - Update Customizations.qll

Pull Request - State: closed - Opened by GeekMasher almost 3 years ago

#19 - Revert "Create Customizations.qll for javascript"

Pull Request - State: closed - Opened by amitgupta7 almost 3 years ago

#17 - submodule update

Pull Request - State: closed - Opened by amitgupta7 almost 3 years ago

#16 - Create Customizations.qll for javascript

Pull Request - State: closed - Opened by amitgupta7 almost 3 years ago

#15 - Update Customizations.qll

Pull Request - State: closed - Opened by amitgupta7 almost 3 years ago - 8 comments

#14 - Add Ruby to gen script and exclude query

Pull Request - State: closed - Opened by GeekMasher about 3 years ago
Labels: ruby

#13 - Go local variants

Pull Request - State: closed - Opened by GeekMasher about 3 years ago - 1 comment
Labels: go

#12 - CVE-2021-44228

Pull Request - State: closed - Opened by GeekMasher about 3 years ago - 1 comment
Labels: java

#11 - Python - Add Boto3 sinks

Pull Request - State: closed - Opened by GeekMasher about 3 years ago
Labels: python

#10 - Add Ruby Suite

Pull Request - State: closed - Opened by GeekMasher about 3 years ago

#8 - Update suites to new syntax

Pull Request - State: closed - Opened by GeekMasher about 3 years ago

#7 - Add Microsoft Drive queries suite

Pull Request - State: closed - Opened by GeekMasher about 3 years ago - 1 comment

#6 - Add new CWE IDs for CPP

Pull Request - State: closed - Opened by GeekMasher about 3 years ago

#3 - Create XSSCustomSanitizer.ql

Pull Request - State: closed - Opened by GeekMasher about 3 years ago - 1 comment

#2 - Add config and GoLang suite

Pull Request - State: closed - Opened by GeekMasher about 3 years ago

#1 - Add a more lenient version of the JSP XSS query.

Pull Request - State: closed - Opened by zbazztian about 3 years ago