Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / github/codeql issues and pull requests

#17753 - [Bug Report] Data Flow Interruption with Function Parameters and Variable Arguments in Python

Issue - State: open - Opened by gravingPro about 1 month ago - 7 comments
Labels: question

#17752 - KE2: Extract `String.plus` and `String?.plus` calls

Pull Request - State: closed - Opened by tamasvajk about 1 month ago
Labels: Kotlin

#17743 - C++: Total number of baseline files limit

Issue - State: open - Opened by artem-smotrakov about 1 month ago - 9 comments
Labels: question

#17742 - C#: Models for higher order methods.

Pull Request - State: closed - Opened by michaelnebel about 1 month ago
Labels: C#, Java, no-change-note-required

#17739 - Data flow: Prevent quadratic blowup in `Stage6Param::localStep`

Pull Request - State: open - Opened by hvitved about 1 month ago
Labels: no-change-note-required, Go, DataFlow Library

#17737 - Go: extractor/objecttypes consistency generics (second try)

Pull Request - State: closed - Opened by owen-mc about 1 month ago - 5 comments
Labels: Go

#17736 - Rust: Add `Callable` as a base class of `Function` and `ClosureExpr`

Pull Request - State: closed - Opened by hvitved about 1 month ago - 1 comment
Labels: Rust

#17732 - Bazel: Upgrade to 8.0.0rc1

Pull Request - State: open - Opened by criemen about 1 month ago

#17726 - Rust: Implement `UnusedValue.ql`

Pull Request - State: closed - Opened by hvitved about 1 month ago - 3 comments
Labels: Rust

#17722 - CodeQL Csharp query help

Issue - State: open - Opened by sunhere about 1 month ago - 4 comments
Labels: question, C#, Stale, awaiting-response

#17721 - Please clarify Use Rights in license

Issue - State: closed - Opened by jkugler about 1 month ago - 3 comments
Labels: question, awaiting-response

#17717 - Go: Update `go/incorrect-integer-conversion` qhelp to explain possible source of FPs

Pull Request - State: closed - Opened by owen-mc about 1 month ago - 4 comments
Labels: documentation, Go

#17713 - Rust: Initial SSA implementation

Pull Request - State: closed - Opened by hvitved about 1 month ago
Labels: Rust

#17701 - Go: `template/text.Template` execution methods: support reading arbitrary content

Pull Request - State: open - Opened by smowton about 1 month ago - 1 comment
Labels: Go

#17699 - Swift: make extractor compilable with Swift 6

Pull Request - State: open - Opened by redsun82 about 1 month ago - 1 comment
Labels: documentation, Swift

#17696 - Rust: Account for captured variables

Pull Request - State: closed - Opened by hvitved about 1 month ago
Labels: no-change-note-required, Rust

#17694 - C++: Do not generate IR for functions with multiple entry points

Pull Request - State: open - Opened by jketema about 1 month ago - 4 comments
Labels: C++, no-change-note-required

#17691 - Java: Add lots of generated models

Pull Request - State: open - Opened by michaelnebel about 1 month ago - 1 comment
Labels: Java

#17688 - Python: Add support for type parameter defaults

Pull Request - State: closed - Opened by tausbn about 1 month ago - 1 comment
Labels: documentation, Python, Awaiting evaluation

#17681 - CodeQL 2.19.1 does not work with Java 23 projects

Issue - State: open - Opened by danishnawab about 1 month ago - 12 comments
Labels: question

#17676 - Brodes/seh flow overhaul2

Pull Request - State: open - Opened by bdrodes about 1 month ago - 11 comments
Labels: C++, documentation

#17673 - Shared: Disjunctive barrier guards for free

Pull Request - State: open - Opened by hvitved about 1 month ago
Labels: C#, Ruby

#17672 - Swift: Update expected test output

Pull Request - State: closed - Opened by hvitved about 1 month ago
Labels: Swift

#17671 - Go: Update expected test output

Pull Request - State: closed - Opened by hvitved about 1 month ago
Labels: Go

#17670 - Ruby: Fix expected test output

Pull Request - State: closed - Opened by hvitved about 1 month ago
Labels: Ruby

#17669 - Bump golang.org/x/tools from 0.25.0 to 0.26.0 in /go/extractor in the extractor-dependencies group

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago - 1 comment
Labels: dependencies, Go

#17668 - Java: Typo in a comment

Pull Request - State: closed - Opened by igfoo about 2 months ago
Labels: Java, no-change-note-required

#17667 - KE2: Be concurrency-safe (hopefully!) and enable concurrency

Pull Request - State: closed - Opened by igfoo about 2 months ago
Labels: Java

#17666 - C#: Update .NET 8 models.

Pull Request - State: closed - Opened by michaelnebel about 2 months ago - 1 comment
Labels: C#, documentation

#17665 - C++: Add some documentation on the printed IR

Pull Request - State: open - Opened by jketema about 2 months ago
Labels: C++, no-change-note-required

#17664 - KE2: Extract some expr/stmt kinds

Pull Request - State: open - Opened by tamasvajk about 2 months ago
Labels: Java

#17663 - Dataflow: Add support for speculative taint flow.

Pull Request - State: open - Opened by aschackmull about 2 months ago - 2 comments
Labels: C#, C++, Java, Python, Go, Ruby, Swift, DataFlow Library

#17662 - KE2: Move expr/stmt extraction to separate file

Pull Request - State: closed - Opened by tamasvajk about 2 months ago
Labels: Java

#17661 - SSA: Add BarrierGuardWithState

Pull Request - State: open - Opened by asgerf about 2 months ago
Labels: no-change-note-required

#17660 - Remove unnecessary query

Pull Request - State: open - Opened by knewbury01 about 2 months ago - 3 comments
Labels: documentation, Java

#17659 - Rust: add macro expansion to the extractor

Pull Request - State: open - Opened by aibaars about 2 months ago
Labels: no-change-note-required, Rust

#17658 - Shared `ConditionalCompletionSplitting` implementation

Pull Request - State: open - Opened by hvitved about 2 months ago
Labels: C#, Ruby, Rust, Swift

#17657 - Rust: Implement `ConditionalCompletionSplitting`

Pull Request - State: open - Opened by hvitved about 2 months ago
Labels: Rust

#17656 - Rust: Diagnose unused variable false positives

Pull Request - State: closed - Opened by geoffw0 about 2 months ago - 6 comments
Labels: Rust

#17655 - Rust: `&(mut) x` is neither a read nor a write

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17654 - C#/Java: Only use heuristic if no content based model exist (in mixed mode).

Pull Request - State: closed - Opened by michaelnebel about 2 months ago
Labels: Java, no-change-note-required

#17653 - Python: Allow type tracking through comprehensions

Pull Request - State: open - Opened by yoff about 2 months ago - 1 comment
Labels: documentation, Python

#17652 - Python: update test_logical.py to use seed in random

Pull Request - State: closed - Opened by allrob23 about 2 months ago - 1 comment
Labels: Python

#17651 - Post-release preparation for codeql-cli-2.19.1

Pull Request - State: closed - Opened by codeql-ci about 2 months ago - 1 comment
Labels: C#, JS, C++, Java, Python, no-change-note-required, Go, Ruby, Swift, DataFlow Library

#17650 - So So so

Issue - State: closed - Opened by osorou about 2 months ago
Labels: invalid

#17649 - Release preparation for version 2.19.1

Pull Request - State: closed - Opened by codeql-ci about 2 months ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library

#17648 - Dataflow: apply diff-informed filtering consistently

Pull Request - State: closed - Opened by cklin about 2 months ago - 1 comment
Labels: no-change-note-required, DataFlow Library

#17647 - Rust: More information about extractor errors and warnings

Pull Request - State: open - Opened by geoffw0 about 2 months ago - 3 comments
Labels: documentation, Ruby, Rust

#17645 - KE2: Refactor the top level a bit

Pull Request - State: closed - Opened by igfoo about 2 months ago
Labels: Java

#17644 - Rust: Add `{BreakExpr,ContinueExpr}.getTarget()`

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17643 - JS: Fix bug causing re-evaluation of cached barriers

Pull Request - State: closed - Opened by asgerf about 2 months ago
Labels: JS, no-change-note-required

#17642 - Rust: Implement `UnusedVariable.ql`

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17640 - Independenbot

Issue - State: closed - Opened by microsoft-studios about 2 months ago
Labels: invalid

#17639 - Update Comment - Clarify threat model flow sources comment in LogForgingQuery.qll

Pull Request - State: closed - Opened by felickz about 2 months ago - 1 comment
Labels: C#, no-change-note-required

#17638 - Support for Svelte

Issue - State: open - Opened by UncleGedd about 2 months ago - 1 comment
Labels: question

#17637 - Go: augment test-extraction tests

Pull Request - State: closed - Opened by smowton about 2 months ago
Labels: Go

#17636 - Revert "Release preparation for version 2.19.1"

Pull Request - State: closed - Opened by angelapwen about 2 months ago - 2 comments
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library

#17635 - Python/DSVW repro

Pull Request - State: open - Opened by yoff about 2 months ago
Labels: Python

#17634 - Java: Add a test for parameter names

Pull Request - State: closed - Opened by igfoo about 2 months ago
Labels: Java

#17633 - Rust: More CFG modelling

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17632 - Java Tracking From Exception Construction to Catch Clause

Issue - State: closed - Opened by KylerKatzUH about 2 months ago - 13 comments
Labels: question, Stale, awaiting-response

#17631 - Post-release preparation for codeql-cli-2.19.1

Pull Request - State: closed - Opened by codeql-ci about 2 months ago - 1 comment
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library

#17630 - Go: deduplicate integration tests

Pull Request - State: closed - Opened by smowton about 2 months ago
Labels: Go

#17629 - Release preparation for version 2.19.1

Pull Request - State: closed - Opened by codeql-ci about 2 months ago
Labels: C#, JS, C++, documentation, Java, Python, Go, Ruby, Swift, DataFlow Library

#17628 - Go: add extractor option for vendor-directory extraction

Pull Request - State: closed - Opened by smowton about 2 months ago
Labels: Go

#17627 - Rust: Accept CFG inconsistencies

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17626 - Rust: Add more CFG tests

Pull Request - State: closed - Opened by hvitved about 2 months ago - 2 comments
Labels: Rust

#17625 - Java: Minor model tweak and comment fix.

Pull Request - State: closed - Opened by aschackmull about 2 months ago
Labels: Java, no-change-note-required

#17624 - Rust: extract comments

Pull Request - State: closed - Opened by aibaars about 2 months ago - 2 comments
Labels: no-change-note-required, Rust

#17623 - Rust: Add labelled block example

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17622 - Java/Kotlin: Add some dbscheme comments

Pull Request - State: closed - Opened by igfoo about 2 months ago
Labels: Java

#17621 - C#: Make Nullable type a ConstructedType and VoidType a ValueType.

Pull Request - State: open - Opened by michaelnebel about 2 months ago
Labels: C#

#17620 - C#: Interpolated string expressions.

Pull Request - State: open - Opened by michaelnebel about 2 months ago
Labels: C#

#17619 - C#: reduce extraction message severity for missing text files

Pull Request - State: closed - Opened by tamasvajk about 2 months ago
Labels: C#

#17618 - Go: Make the models-as-data subtypes column do something more sensible for promoted methods

Pull Request - State: closed - Opened by owen-mc about 2 months ago - 7 comments
Labels: documentation, Go

#17617 - Rust: Add extraction error consistency query

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17616 - Bump regex from 1.10.6 to 1.11.0 in /ql

Pull Request - State: open - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, QL-for-QL

#17615 - The number of paths different from codeql-cli and vscode

Issue - State: closed - Opened by whyaicn about 2 months ago - 6 comments
Labels: question, awaiting-response

#17611 - Brodes/wcharcharconversion false positives upstream5

Pull Request - State: closed - Opened by bdrodes about 2 months ago - 8 comments
Labels: C++, documentation

#17610 - Brodes/wcharcharconversion false positives upstream4

Pull Request - State: closed - Opened by bdrodes about 2 months ago
Labels: C++, documentation

#17609 - Brodes/wcharcharconversion false positives upstream3

Pull Request - State: closed - Opened by bdrodes about 2 months ago
Labels: C++, documentation

#17608 - C++: Add more macro expansion tests

Pull Request - State: closed - Opened by jketema about 2 months ago
Labels: C++

#17607 - Go: Add comments noting methods from embedded interfaces are already included

Pull Request - State: closed - Opened by owen-mc about 2 months ago
Labels: no-change-note-required, Go

#17606 - Rust: AST support for variables

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17605 - Java: Add a couple of neutrals

Pull Request - State: closed - Opened by aschackmull about 2 months ago
Labels: Java, no-change-note-required

#17604 - Java/C#: Add overrides to the interpretation of neutral MaD models.

Pull Request - State: closed - Opened by aschackmull about 2 months ago - 5 comments
Labels: C#, Java, no-change-note-required

#17603 - C#: Insecure Certificate Validation.

Pull Request - State: open - Opened by michaelnebel about 2 months ago - 1 comment
Labels: C#, documentation

#17602 - Rust: Prune CFG for obviously impossible `true/false` edges

Pull Request - State: closed - Opened by hvitved about 2 months ago
Labels: Rust

#17601 - KE2: Add CODEOWNERS

Pull Request - State: closed - Opened by igfoo about 2 months ago

#17600 - KE2: Add bugfix from KE1's #17599

Pull Request - State: closed - Opened by igfoo about 2 months ago
Labels: Java

#17599 - Kotlin: Fix the return type for lambda constructors

Pull Request - State: closed - Opened by igfoo about 2 months ago
Labels: Java, Kotlin

#17598 - Shared: cache getBasicBlock() as it is needed from BarrierGuards

Pull Request - State: closed - Opened by asgerf about 2 months ago

#17597 - Java: Add model for CharArrayWriter.toString().

Pull Request - State: closed - Opened by aschackmull about 2 months ago - 1 comment
Labels: Java, no-change-note-required

#17596 - Update codeql-extractor.yml

Pull Request - State: closed - Opened by Arindamsharma12 about 2 months ago - 1 comment
Labels: JS

#17595 - Brodes/wcharcharconversion false positives upstream2

Pull Request - State: closed - Opened by bdrodes about 2 months ago - 5 comments
Labels: C++, documentation

#17594 - KE2: Remove the declaration stack for now

Pull Request - State: closed - Opened by igfoo about 2 months ago
Labels: Java

#17593 - C++: Make checking for macro expansions depend less on location information

Pull Request - State: closed - Opened by jketema about 2 months ago
Labels: C++

#17592 - Rust: run cargo fmt

Pull Request - State: closed - Opened by aibaars about 2 months ago
Labels: no-change-note-required, Rust

#17591 - Add change note for Java 23 support

Pull Request - State: closed - Opened by smowton about 2 months ago
Labels: documentation, Java