GitHub / github/codeql issues and pull requests
Labelled with: Java
#15531 - Post-release preparation for codeql-cli-2.16.2
Pull Request -
State: closed - Opened by codeql-ci almost 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#15526 - Java: fix typo in JndiInjection.qhelp
Pull Request -
State: closed - Opened by erik-krogh almost 2 years ago
- 1 comment
Labels: documentation, Java
#15515 - Bump org.springframework:spring-context from 5.3.18 to 5.3.19 in /java/ql/test/utils/flowtestcasegenerator
Pull Request -
State: open - Opened by dependabot[bot] about 2 years ago
Labels: Java, dependencies
#15511 - Java: Remove two redundant models implied by CharSequence models.
Pull Request -
State: closed - Opened by aschackmull about 2 years ago
- 1 comment
Labels: Java, no-change-note-required
#15507 - Shared: fix a bug in stateful outbarriers
Pull Request -
State: closed - Opened by asgerf about 2 years ago
Labels: Java, no-change-note-required, DataFlow Library
#15501 - Dataflow: Support alert provenance
Pull Request -
State: closed - Opened by aschackmull about 2 years ago
- 3 comments
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#15500 - DO NOT MERGE. Bump automodel query pack version for release kaspersv/automodel-pack-publisher-7739955510-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15499 - Automodel: Do not consider `@FunctionalInterface`-typed expressions as candidates.
Pull Request -
State: closed - Opened by max-schaefer about 2 years ago
- 1 comment
Labels: Java
#15494 - explicit java Function<X,Y> implementation is not tainted?
Issue -
State: open - Opened by odipar about 2 years ago
- 3 comments
Labels: question, Java
#15487 - Java: Update MaD Declarations after Triage
Pull Request -
State: open - Opened by max-schaefer about 2 years ago
Labels: Java, ATM
#15486 - Java: Update MaD Declarations after Triage
Pull Request -
State: closed - Opened by max-schaefer about 2 years ago
- 6 comments
Labels: documentation, Java
#15481 - Java: Add query for insecure local authentication
Pull Request -
State: closed - Opened by joefarebrother about 2 years ago
- 1 comment
Labels: documentation, Java, ready-for-doc-review
#15451 - Java: Document which assignment type is covered by which class
Pull Request -
State: closed - Opened by Marcono1234 about 2 years ago
- 1 comment
Labels: Java, no-change-note-required
#15447 - Merge `codeql-cli-2.16.0` back into `codeql-cli-2.16.1`
Pull Request -
State: closed - Opened by henrymercer about 2 years ago
- 1 comment
Labels: documentation, Java
#15446 - Merge `codeql-cli-2.16.1` back to `main`
Pull Request -
State: closed - Opened by coadaflorin about 2 years ago
Labels: documentation, Java
#15443 - DO NOT MERGE. Bump automodel query pack version for release kaeluka/automodel-pack-publisher-7667732025-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
- 1 comment
Labels: Java
#15436 - Java: Add models for overloads of DatagramPacket constructor
Pull Request -
State: closed - Opened by max-schaefer about 2 years ago
- 2 comments
Labels: Java, no-change-note-required
#15425 - Java: sql-injection sink in org.apache.ibatis.mapping::BoundSql
Pull Request -
State: closed - Opened by kaeluka about 2 years ago
- 1 comment
Labels: Java, no-change-note-required
#15425 - Java: sql-injection sink in org.apache.ibatis.mapping::BoundSql
Pull Request -
State: closed - Opened by kaeluka about 2 years ago
- 1 comment
Labels: Java, no-change-note-required
#15420 - Java: Update MaD Declarations after Triage
Pull Request -
State: closed - Opened by kaeluka about 2 years ago
- 1 comment
Labels: documentation, Java
#15414 - Release preparation for version 2.16.1
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#15413 - Add tests for Java buildless w/sibling projects
Pull Request -
State: closed - Opened by smowton about 2 years ago
Labels: Java
#15409 - Java: Improve the QHelp for `java/path-injection`.
Pull Request -
State: closed - Opened by erik-krogh about 2 years ago
- 4 comments
Labels: documentation, Java, ready-for-doc-review
#15399 - Release preparation for version 2.16.1
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#15393 - All: delete outdated deprecations
Pull Request -
State: closed - Opened by erik-krogh about 2 years ago
Labels: C#, JS, C++, WIP, documentation, Java, Python, Go, Ruby, QL-for-QL
#15375 - Fix change note category for clarity
Pull Request -
State: closed - Opened by atorralba about 2 years ago
Labels: documentation, Java
#15357 - DO NOT MERGE. Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7558873120-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15352 - DO NOT MERGE. Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7555761919-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15351 - JS/PY/JAVA/RB: mark the range [0-?] as good in the overly-large-range query
Pull Request -
State: closed - Opened by erik-krogh about 2 years ago
Labels: JS, Java, Python, Ruby
#15340 - DO NOT MERGE. Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7543902918-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15339 - DO NOT MERGE. Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7541576750-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15332 - Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7531433060-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15331 - Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7531386701-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15326 - Automodel: Apply negative characteristics only to endpoints of the right kind.
Pull Request -
State: closed - Opened by max-schaefer about 2 years ago
- 3 comments
Labels: Java
#15323 - Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7526673130-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15312 - Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7504048106-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15310 - Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7504022397-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: Java
#15309 - Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7504012251-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
- 1 comment
Labels: Java
#15308 - Release preparation for version 2.16.0
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#15307 - Bump automodel query pack version for release Z80coder/automodel-pack-publisher-7503732746-dryrun
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
- 1 comment
Labels: Java
#15291 - Java: Introduce a common sanitizer type for types which cannot realistically carry taint.
Pull Request -
State: closed - Opened by egregius313 about 2 years ago
- 3 comments
Labels: documentation, Java
#15283 - Release automodel extraction queries v0.0.12.
Pull Request -
State: closed - Opened by max-schaefer about 2 years ago
Labels: documentation, Java
#15281 - Java: Add query for exposure of sensitive information to android notifiactions
Pull Request -
State: closed - Opened by joefarebrother about 2 years ago
- 2 comments
Labels: documentation, Java, ready-for-doc-review
#15264 - Automodel: Do not generate features for compiler-generated program elements.
Pull Request -
State: closed - Opened by max-schaefer about 2 years ago
- 6 comments
Labels: Java
#15260 - Data flow: Remove column from `mayBenefitFromCallContext`
Pull Request -
State: closed - Opened by hvitved about 2 years ago
Labels: C#, C++, documentation, Java, Python, no-change-note-required, Go, Ruby, Swift, DataFlow Library
#15254 - Post-release preparation for codeql-cli-2.16.0
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#15251 - Support dry-run of publishing script
Pull Request -
State: closed - Opened by Z80coder about 2 years ago
- 2 comments
Labels: Java
#15250 - Release preparation for version 2.16.0
Pull Request -
State: closed - Opened by codeql-ci about 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#15246 - C#/Java: Manual neutral summaries should block generated summaries
Pull Request -
State: closed - Opened by owen-mc about 2 years ago
- 3 comments
Labels: C#, documentation, Java
#15227 - Add test for Java buildless vs Maven multimodule projects
Pull Request -
State: closed - Opened by smowton about 2 years ago
Labels: Java
#15226 - 0.0.11 release of `automodel` extraction queries
Issue -
State: closed - Opened by Z80coder about 2 years ago
Labels: documentation, Java
#15188 - Java: Update MaD Declarations after Triage
Pull Request -
State: closed - Opened by kaeluka about 2 years ago
- 1 comment
Labels: documentation, Java
#15165 - ensure `publish.sh` uses the latest `automodel` release
Pull Request -
State: closed - Opened by Z80coder about 2 years ago
Labels: documentation, Java
#15118 - Ruby: Track types in data flow
Pull Request -
State: closed - Opened by hvitved about 2 years ago
Labels: C#, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#15118 - Ruby: Track types in data flow
Pull Request -
State: closed - Opened by hvitved about 2 years ago
Labels: C#, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#14941 - Kotlin 2: Accept some location changes
Pull Request -
State: closed - Opened by igfoo about 2 years ago
Labels: Java
#14926 - Java: Improve Gson parse, get, and stream models
Pull Request -
State: closed - Opened by ebickle about 2 years ago
- 2 comments
Labels: documentation, Java
#14919 - Java: add dataflow-generated models for JDK17
Pull Request -
State: closed - Opened by owen-mc about 2 years ago
- 2 comments
Labels: documentation, Java
#14862 - Kotlin: Move tests from test/kotlin to test-kotlin1
Pull Request -
State: closed - Opened by igfoo about 2 years ago
Labels: depends on internal PR, Java
#14724 - Java: Environment variable injection query
Pull Request -
State: closed - Opened by egregius313 about 2 years ago
- 3 comments
Labels: documentation, Java, ready-for-doc-review
#14681 - Java: Add more sinks to the Insecure Randomness query
Pull Request -
State: closed - Opened by atorralba over 2 years ago
- 2 comments
Labels: Java, no-change-note-required
#14681 - Java: Add more sinks to the Weak Randomness query
Pull Request -
State: open - Opened by atorralba over 2 years ago
- 2 comments
Labels: documentation, Java
#14671 - Java: Add support for Java 21 language features
Pull Request -
State: open - Opened by smowton over 2 years ago
Labels: documentation, Java
#14659 - Java/C++: Share modulus analysis
Pull Request -
State: closed - Opened by aschackmull over 2 years ago
- 1 comment
Labels: C++, Java, no-change-note-required
#14646 - Java: Update MaD Declarations after Triage
Pull Request -
State: open - Opened by atorralba over 2 years ago
- 1 comment
Labels: documentation, Java
#14642 - Java: Publish Automodel query pack 0.0.7
Pull Request -
State: open - Opened by kaeluka over 2 years ago
Labels: documentation, Java, no-change-note-required
#14634 - Post-release preparation for codeql-cli-2.15.2
Pull Request -
State: closed - Opened by codeql-ci over 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#14630 - Release preparation for version 2.15.2
Pull Request -
State: closed - Opened by codeql-ci over 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#14624 - Bump org.owasp.esapi:esapi from 2.2.3.1 to 2.5.2.0 in /java/ql/test/utils/flowtestcasegenerator
Pull Request -
State: open - Opened by dependabot[bot] over 2 years ago
Labels: Java, dependencies
#14610 - Java: Add JMS sink to java/unsafe-deserialization
Pull Request -
State: open - Opened by atorralba over 2 years ago
- 1 comment
Labels: documentation, Java
#14602 - Java: Split the different layers of virtual dispatch into separate cached stages.
Pull Request -
State: closed - Opened by aschackmull over 2 years ago
- 1 comment
Labels: Java, no-change-note-required
#14601 - Java: Update tests to new partial flow api
Pull Request -
State: closed - Opened by aschackmull over 2 years ago
Labels: Java, no-change-note-required
#14588 - C++/Java: Share core range analysis
Pull Request -
State: closed - Opened by aschackmull over 2 years ago
- 2 comments
Labels: C#, C++, documentation, Java
#14584 - Kotlin: Mention `Literal::getLiteral()` difference from source code
Pull Request -
State: closed - Opened by Marcono1234 over 2 years ago
Labels: Java, no-change-note-required
#14583 - Java: Deprecate MethodAccess and SuperMethodAccess
Pull Request -
State: closed - Opened by smowton over 2 years ago
- 1 comment
Labels: Java, no-change-note-required
#14582 - Java: Threat model implementation with priorities.
Pull Request -
State: closed - Opened by dbartol over 2 years ago
- 4 comments
Labels: Java, no-change-note-required
#14581 - Java: exclude internal packages globally from MaD models
Pull Request -
State: closed - Opened by jcogs33 over 2 years ago
Labels: Java, no-change-note-required
#14580 - Java: Update MaD Declarations after Triage
Pull Request -
State: open - Opened by atorralba over 2 years ago
- 1 comment
Labels: documentation, Java
#14575 - Java: Replace MethodAccess, LValue, RValue with more intuitive names. Introduce NewClassExpr.
Pull Request -
State: closed - Opened by smowton over 2 years ago
Labels: documentation, Java, Kotlin
#14553 - Java: Automodel Framework Mode Extraction Bug
Pull Request -
State: closed - Opened by kaeluka over 2 years ago
Labels: Java
#14551 - Java/Kotlin: Reshuffle our LoC queries
Pull Request -
State: closed - Opened by igfoo over 2 years ago
Labels: documentation, Java
#14548 - Implement threat models as extension packs
Pull Request -
State: closed - Opened by dbartol over 2 years ago
- 1 comment
Labels: documentation, Java, no-change-note-required
#14531 - Post-release preparation for codeql-cli-2.15.1
Pull Request -
State: closed - Opened by codeql-ci over 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#14519 - Release preparation for version 2.15.1
Pull Request -
State: closed - Opened by codeql-ci over 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#14518 - Kotlin: Log when we start and finish writing to TRAP files
Pull Request -
State: closed - Opened by igfoo over 2 years ago
Labels: Java, Kotlin
#14515 - Java: Improve java/spring-disabled-csrf-protection
Pull Request -
State: closed - Opened by atorralba over 2 years ago
- 1 comment
Labels: documentation, Java
#14503 - Java: Adapt tests to JDK21
Pull Request -
State: closed - Opened by smowton over 2 years ago
Labels: Java, Kotlin
#14499 - Release preparation for version 2.15.0
Pull Request -
State: closed - Opened by codeql-ci over 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#14494 - Java/C/C#: Remove library annotations
Pull Request -
State: closed - Opened by atorralba over 2 years ago
Labels: C#, C++, Java, no-change-note-required
#14491 - Java: Refactor `java/static-initialization-vector` to use Models as Data
Pull Request -
State: closed - Opened by egregius313 over 2 years ago
- 5 comments
Labels: Java, no-change-note-required
#14487 - Java: basic version of automodel extraction query docs
Pull Request -
State: closed - Opened by kaeluka over 2 years ago
- 2 comments
Labels: documentation, Java
#14445 - Go: automated mad coverage report
Pull Request -
State: closed - Opened by owen-mc over 2 years ago
Labels: C#, Java, no-change-note-required, Go
#14443 - Post-release preparation for codeql-cli-2.15.0
Pull Request -
State: closed - Opened by codeql-ci over 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#14438 - Automodel: Fix automodel extraction queries
Pull Request -
State: closed - Opened by jhelie over 2 years ago
- 1 comment
Labels: Java
#14427 - Post-release preparation for codeql-cli-2.15.0
Pull Request -
State: closed - Opened by codeql-ci over 2 years ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library
#14403 - All: delete outdated deprecations
Pull Request -
State: closed - Opened by erik-krogh over 2 years ago
- 1 comment
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift
#14402 - Java: Add predicate `MemberRefExpr::getReceiverExpr`
Pull Request -
State: closed - Opened by Marcono1234 over 2 years ago
Labels: documentation, Java
#14401 - Java: Adjust `ClassInstanceExpr` type argument predicates docs
Pull Request -
State: closed - Opened by Marcono1234 over 2 years ago
Labels: Java, no-change-note-required
#14399 - Java: Flow taint through arithmetic expressions for java/thread-resource-abuse experimental query
Pull Request -
State: closed - Opened by ebickle over 2 years ago
Labels: Java
#14390 - Kotlin: Improve support for TRAP compression options
Pull Request -
State: closed - Opened by igfoo over 2 years ago
Labels: Java, Kotlin