Author
Label
Projects
Milestones
Reviews
Assignee
Sort
[Java] Improve InsecureJavaMail.qhelp references
#3987
opened Jul 28, 2020 by
Marcono1234
β’
Review required
C#: Fix false-positives in `cs/dereferenced-value-may-be-null`
C#
#3986
opened Jul 28, 2020 by
hvitved
β’
Review required
JavaScript: Make access paths more reusable
#3980
opened Jul 27, 2020 by
max-schaefer
β’
Review required
JavaScript: Add more command-injection sinks.
#3979
opened Jul 27, 2020 by
max-schaefer
β’
Review required
[javascript] CodeQL query to detect if cookies are sent without the flag secure being set
#3978
opened Jul 26, 2020 by
dellalibera
β’
Review required
[JS] cwe-327 (Weak or vulnerable cryptography usage) added
#3977
opened Jul 26, 2020 by
monkey-junkie
β’
Review required
Add basic LGTM tutorials to CodeQL sphinx project
#3973
opened Jul 24, 2020 by
shati-patel
β’
Review required
Java: Move LDAP injection sinks, sanitizers, and additional taint steps to importable location
#3968
opened Jul 22, 2020 by
rvermeulen
β’
Review required
Java: stack trace exposure: address false positives
Java
#3948
opened Jul 13, 2020 by
aibaars
β’
Review required
Java: Clean up ContainerFlow: address outstanding comments
Java
#3946
opened Jul 13, 2020 by
aibaars
β’
Review required
JAVA : Add query to detect Apache Structs enabled Devmode
Java
#3945
opened Jul 12, 2020 by
porcupineyhairs
β’
Review required
Java: add query to detect web.xml auth bypass through verb tampering
Java
#3944
opened Jul 12, 2020 by
porcupineyhairs
β’
Review required
Java: Untrusted data used in external APIs
Java
#3938
opened Jul 9, 2020 by
lcartey
β’
Review required
C++: Alternate instruction -> operand flow
C++
#3933
opened Jul 9, 2020 by
MathiasVP
β’
Review required
JS: rewriting DeadStoreOfProperty.ql to avoid bad worst-case runtime
JS
#3930
opened Jul 8, 2020 by
erik-krogh
β’
Review required
Java: Move `HeaderSplittingSink` and `WhitelistedSource` into importable library
Java
#3928
opened Jul 8, 2020 by
rvermeulen
β’
Changes requested
Previous Next
ProTip!
Adding no:label will show everything without a label.