-
Notifications
You must be signed in to change notification settings - Fork 2k
Pull requests: github/codeql
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Actions: Fix dominates() false positive in reusable workflows
Actions
Analysis of GitHub Actions
documentation
#21986
opened Jun 15, 2026 by
JarLob
Contributor
Loading…
Kotlin: add Kotlin 2.4.0 support
documentation
Java
Kotlin
#21970
opened Jun 11, 2026 by
andersfugmann
Contributor
Loading…
Python: Track instance attributes through type tracking
documentation
Python
#21969
opened Jun 11, 2026 by
Copilot
AI
Loading…
Convert selected Python qlref tests to inline expectations
Python
#21967
opened Jun 10, 2026 by
Copilot
AI
Loading…
Add experimental C# query: SSRF host guard missing IPv6-transition unwrap (CWE-918/CWE-1389)
C#
documentation
#21964
opened Jun 10, 2026 by
tonghuaroot
Contributor
Loading…
Unified: More work on AST and Swift mappings
no-change-note-required
This PR does not need a change note
[Javascript] Prompt Injection queries
documentation
javascript
Pull requests that update Javascript code
JS
Python
#21953
opened Jun 8, 2026 by
BazookaMusic
Contributor
Loading…
YAML: Extract comments
Actions
Analysis of GitHub Actions
depends on internal PR
This PR should only be merged in sync with an internal Semmle PR
javascript
Pull requests that update Javascript code
JS
no-change-note-required
This PR does not need a change note
Python
QL-for-QL
Ruby
Rust
Pull requests that update Rust code
#21935
opened Jun 3, 2026 by
MathiasVP
Contributor
Loading…
Shared CFG: add defaulted getWhileElse/getForeachElse to AstSig
#21931
opened Jun 2, 2026 by
yoff
Contributor
Loading…
Python: inline init_module_submodule_defn into ImportResolution
documentation
Python
#21930
opened Jun 2, 2026 by
yoff
Contributor
Loading…
Python: add new shared-CFG-backed control flow graph (additive)
documentation
Go
Python
Ruby
Rust
Pull requests that update Rust code
Python: qualify Flow.qll's AST references with Py:: prefix
no-change-note-required
This PR does not need a change note
Python
#21920
opened Jun 1, 2026 by
yoff
Contributor
Loading…
Python: deprecate AstNode.getAFlowNode() and rewrite callers
documentation
Python
#21919
opened Jun 1, 2026 by
yoff
Contributor
Loading…
Kotlin: Fix findTopLevelPropertyOrWarn for K2 compiler
documentation
Java
Kotlin
#21915
opened May 30, 2026 by
david-allison
Loading…
C++: Proper indirection in all QL models
C++
no-change-note-required
This PR does not need a change note
[MaD][Test] Add Apache Axis2 models
documentation
Java
#21903
opened May 28, 2026 by
BazookaMusic
Contributor
•
Draft
Rust: Add manual regression test for dbscheme upgrade
documentation
no-change-note-required
This PR does not need a change note
Rust
Pull requests that update Rust code
#21895
opened May 26, 2026 by
redsun82
Contributor
Loading…
C++: Model formatting functions with a This PR should only be merged in sync with an internal Semmle PR
va_list parameter
C++
depends on internal PR
Previous Next
ProTip!
Follow long discussions with comments:>50.