Skip to content
This repository was archived by the owner on Apr 4, 2025. It is now read-only.

Commit 3d8ba64

Browse files
authored
Merge branch 'main' into securingdev-java-CWE-611-dataflow-update
2 parents d59520e + 2209ea7 commit 3d8ba64

13 files changed

Lines changed: 55 additions & 62 deletions

File tree

.codeqlmanifest.json

Lines changed: 3 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -2,11 +2,9 @@
22
"provide": [
33
"codeql/*/ql/src/qlpack.yml",
44
"codeql/*/ql/lib/qlpack.yml",
5-
"extensions/*/qlpack.yml",
65
"*/qlpack.yml",
7-
"*/customizations/qlpack.yml",
8-
"go/qlpack.yml",
9-
"tests/go-tests/qlpack.yml"
6+
"extensions/*/qlpack.yml",
7+
"tests/*/qlpack.yml"
108
],
119
"versionPolicies": {
1210
"default": {
@@ -15,4 +13,4 @@
1513
"committedVersion": "nextPatchRelease"
1614
}
1715
}
18-
}
16+
}

.github/workflows/release-main.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -2,7 +2,7 @@ name: "Create CodeQL Pack Release"
22

33
on:
44
push:
5-
branches: [ main ]
5+
branches: [main]
66
workflow_dispatch:
77

88
jobs:
@@ -16,14 +16,14 @@ jobs:
1616
strategy:
1717
fail-fast: false
1818
matrix:
19-
language: [ 'csharp', 'javascript', 'python' ]
19+
language: ["csharp", "javascript", "python"]
2020

2121
steps:
2222
- uses: actions/checkout@v3
2323

2424
- name: "Check and Publish CodeQL Packs"
2525
env:
26-
GITHUB_TOKEN: ${{ secrets.OCTODEMOBOT_PACKAGES_ACCESS_TOKEN }}
26+
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
2727
run: |
2828
PUBLISHED_VERSION=$(gh api /orgs/advanced-security/packages/container/codeql-${{ matrix.language }}/versions --jq '.[0].metadata.container.tags[0]')
2929
CURRENT_VERSION=$(grep version ${{ matrix.language }}/qlpack.yml | awk '{print $2}')
@@ -40,14 +40,14 @@ jobs:
4040
strategy:
4141
fail-fast: false
4242
matrix:
43-
language: [ 'csharp', 'java', 'javascript' ]
43+
language: ["csharp", "java", "javascript"]
4444

4545
steps:
4646
- uses: actions/checkout@v3
4747

4848
- name: Compile / Check Suites & Packs
4949
env:
50-
GITHUB_TOKEN: ${{ secrets.OCTODEMOBOT_PACKAGES_ACCESS_TOKEN }}
50+
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
5151
run: |
5252
PUBLISHED_VERSION=$(gh api /orgs/advanced-security/packages/container/codeql-${{ matrix.language }}-extensions/versions --jq '.[0].metadata.container.tags[0]')
5353
CURRENT_VERSION=$(grep version extensions/codeql-${{ matrix.language }}-extensions/qlpack.yml | awk '{print $2}')

codeql

Submodule codeql updated 686 files

config/codeql.yml

Lines changed: 14 additions & 14 deletions
Original file line numberDiff line numberDiff line change
@@ -4,42 +4,42 @@ disable-default-queries: true
44

55
packs:
66
# > C/C++
7-
# security-extended
8-
- codeql/cpp-queries:codeql-suites/cpp-security-extended.qls
7+
# security-experimental
8+
- codeql/cpp-queries:codeql-suites/cpp-security-experimental.qls
99

1010
# > C# queries
1111
- advanced-security/codeql-csharp
1212
- advanced-security/codeql-csharp-extensions
13-
# security-extended
14-
- codeql/csharp-queries:codeql-suites/csharp-security-extended.qls
13+
# security-experimental
14+
- codeql/csharp-queries:codeql-suites/csharp-security-experimental.qls
1515
# solorigate
1616
- codeql/csharp-solorigate-queries
1717

1818
# > Java/Kotlin queries
1919
- advanced-security/codeql-java
2020
- advanced-security/codeql-java-extensions
21-
# security-extended
22-
- codeql/java-queries:codeql-suites/java-security-extended.qls
21+
# security-experimental
22+
- codeql/java-queries:codeql-suites/java-security-experimental.qls
2323

2424
# > JavaScript/TypeScript queries
2525
- advanced-security/codeql-javascript
2626
- advanced-security/codeql-javascript-extensions
27-
# security-extended
28-
- codeql/javascript-queries:codeql-suites/javascript-security-extended.qls
27+
# security-experimental
28+
- codeql/javascript-queries:codeql-suites/javascript-security-experimental.qls
2929

3030
# > Python queries
3131
- advanced-security/codeql-python
32-
# security-extended
33-
- codeql/python-queries:codeql-suites/python-security-extended.qls
32+
# security-experimental
33+
- codeql/python-queries:codeql-suites/python-security-experimental.qls
3434

3535
# > Go queries
3636
- advanced-security/codeql-go
37-
# security-extended
38-
- codeql/go-queries:codeql-suites/go-security-extended.qls
37+
# security-experimental
38+
- codeql/go-queries:codeql-suites/go-security-experimental.qls
3939

4040
# > Ruby
41-
# security-extended
42-
- codeql/ruby-queries:codeql-suites/ruby-security-extended.qls
41+
# security-experimental
42+
- codeql/ruby-queries:codeql-suites/ruby-security-experimental.qls
4343

4444

4545
paths-ignore:

cpp/qlpack.yml

Lines changed: 3 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,6 @@
1-
---
21
library: false
32
name: advanced-security/codeql-cpp
4-
version: 0.1.0
5-
dependencies:
6-
codeql/cpp-all: "^0.7.2"
3+
version: 0.2.0
74
defaultSuiteFile: suites/codeql-cpp.qls
5+
dependencies:
6+
codeql/cpp-all: 0.9.0

csharp/codeql-pack.lock.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -2,11 +2,11 @@
22
lockVersion: 1.0.0
33
dependencies:
44
codeql/csharp-all:
5-
version: 0.6.2
5+
version: 0.6.4
66
codeql/ssa:
7-
version: 0.0.17
7+
version: 0.0.19
88
codeql/tutorial:
9-
version: 0.0.10
9+
version: 0.0.12
1010
codeql/util:
11-
version: 0.0.10
11+
version: 0.0.12
1212
compiled: false

csharp/qlpack.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
1-
---
21
library: false
32
name: advanced-security/codeql-csharp
4-
version: 0.3.0
5-
dependencies:
6-
codeql/csharp-all: "^0.6.2"
3+
version: 0.4.0
74
defaultSuiteFile: suites/codeql-csharp.qls
5+
dependencies:
6+
codeql/csharp-all: 0.7.2
7+
advanced-security/codeql-csharp-extensions: 0.3.0

go/qlpack.yml

Lines changed: 3 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,6 @@
1-
---
21
library: false
32
name: advanced-security/codeql-go
4-
version: 0.1.0
5-
dependencies:
6-
codeql/go-all: "^0.5.2"
3+
version: 0.2.0
74
defaultSuiteFile: suites/codeql-go.qls
5+
dependencies:
6+
codeql/go-all: 0.6.2

java/qlpack.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,7 @@
1-
---
21
library: false
32
name: advanced-security/codeql-java
4-
version: 0.1.0
5-
dependencies:
6-
codeql/java-all: "^0.6.2"
3+
version: 0.2.0
74
defaultSuiteFile: suites/codeql-java.qls
5+
dependencies:
6+
codeql/java-all: 0.7.2
7+
advanced-security/codeql-java-extensions: 0.3.2

javascript/qlpack.yml

Lines changed: 3 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,6 @@
1-
---
21
library: false
32
name: advanced-security/codeql-javascript
4-
version: 0.3.1
5-
dependencies:
6-
codeql/javascript-all: "^0.6.2"
3+
version: 0.4.0
74
defaultSuiteFile: suites/codeql-javascript.qls
5+
dependencies:
6+
codeql/javascript-all: 0.7.2

0 commit comments

Comments
 (0)