Author
Label
Projects
Milestones
Reviews
Assignee
Sort
JavaScript: Make access paths more reusable
#3980
opened Jul 27, 2020 by
max-schaefer
•
Review required
JavaScript: Add more command-injection sinks.
#3979
opened Jul 27, 2020 by
max-schaefer
•
Review required
[javascript] CodeQL query to detect if cookies are sent without the flag secure being set
#3978
opened Jul 26, 2020 by
dellalibera
•
Review required
[JS] cwe-327 (Weak or vulnerable cryptography usage) added
#3977
opened Jul 26, 2020 by
monkey-junkie
•
Review required
Add basic LGTM tutorials to CodeQL sphinx project
#3973
opened Jul 24, 2020 by
shati-patel
•
Review required
Java: Move LDAP injection sinks, sanitizers, and additional taint steps to importable location
#3968
opened Jul 22, 2020 by
rvermeulen
•
Review required
Java: stack trace exposure: address false positives
Java
#3948
opened Jul 13, 2020 by
aibaars
•
Review required
Java: Clean up ContainerFlow: address outstanding comments
Java
#3946
opened Jul 13, 2020 by
aibaars
•
Review required
JAVA : Add query to detect Apache Structs enabled Devmode
Java
#3945
opened Jul 12, 2020 by
porcupineyhairs
•
Review required
Java: add query to detect web.xml auth bypass through verb tampering
Java
#3944
opened Jul 12, 2020 by
porcupineyhairs
•
Review required
Java: Untrusted data used in external APIs
Java
#3938
opened Jul 9, 2020 by
lcartey
•
Review required
C++: Alternate instruction -> operand flow
C++
#3933
opened Jul 9, 2020 by
MathiasVP
•
Review required
JS: rewriting DeadStoreOfProperty.ql to avoid bad worst-case runtime
JS
#3930
opened Jul 8, 2020 by
erik-krogh
•
Review required
Java: Move `HeaderSplittingSink` and `WhitelistedSource` into importable library
Java
#3928
opened Jul 8, 2020 by
rvermeulen
•
Changes requested
C++: Adds another redundant null check rule
C++
#3921
opened Jul 7, 2020 by
catenacyber
•
Approved
1 of 1
JS: only include named topmost package.json files for js/shell-command-constructed-from-input
JS
#3913
opened Jul 7, 2020 by
erik-krogh
•
Review required
Previous Next
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.