-
Notifications
You must be signed in to change notification settings - Fork 2k
Pull requests: github/codeql
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
Ruby: Split callable and its body into two AST nodes.
Ruby
#21867
opened May 19, 2026 by
aschackmull
Contributor
•
Draft
C#: Property- and Indexer calls for ref return properties and indexers.
C#
documentation
#21866
opened May 19, 2026 by
michaelnebel
Contributor
•
Draft
Post-release preparation for codeql-cli-2.25.5
Actions
Analysis of GitHub Actions
C#
C++
DataFlow Library
documentation
Go
Java
JS
Python
Ruby
Rust
Pull requests that update Rust code
Swift
C++: Remove This PR should only be merged in sync with an internal Semmle PR
FunctionWithWrappers from cpp/tainted-format-string
C++
depends on internal PR
C++: Model secure versions of
scanf as flow sources
C++
documentation
#21856
opened May 15, 2026 by
MathiasVP
Contributor
Loading…
Improve actions/ql/src/Security/CWE-829/UntrustedCheckoutX queries further iteration
Actions
Analysis of GitHub Actions
documentation
#21852
opened May 14, 2026 by
knewbury01
Contributor
•
Draft
Type inference: Unify This PR does not need a change note
Rust
Pull requests that update Rust code
getABaseTypeMention and conditionSatisfiesConstraint
no-change-note-required
#21850
opened May 13, 2026 by
hvitved
Contributor
Loading…
Cfg: Add consistency queries for the Ast module.
C#
Java
#21849
opened May 13, 2026 by
aschackmull
Contributor
•
Draft
Unified: Add schema checking and corpus-style tests
documentation
no-change-note-required
This PR does not need a change note
#21848
opened May 13, 2026 by
asgerf
Contributor
Loading…
C#: Unary expression cleanup in the extractor.
C#
#21845
opened May 13, 2026 by
michaelnebel
Contributor
•
Draft
C#: Improve dataflow for mutation definition and mutation operator calls.
C#
documentation
#21839
opened May 12, 2026 by
michaelnebel
Contributor
•
Draft
C++: Support reasoning about whether a phi node overwrites the entire buffer
C++
no-change-note-required
This PR does not need a change note
#21836
opened May 12, 2026 by
MathiasVP
Contributor
Loading…
Adds support for multiple versions of external actions and workflows
Actions
Analysis of GitHub Actions
#21835
opened May 12, 2026 by
jessehouwing
Loading…
C#: Include user defined operator calls in UnaryOperations.
C#
#21820
opened May 8, 2026 by
michaelnebel
Contributor
•
Draft
CFG: Consider logical not a post order operation.
#21811
opened May 7, 2026 by
michaelnebel
Contributor
•
Draft
Update CWE-918 model coverage for Apache HttpClient
execute sinks
documentation
Java
#21804
opened May 6, 2026 by
Copilot
AI
Loading…
Adjust alert location UntrustedCheckoutCritical
Actions
Analysis of GitHub Actions
documentation
#21800
opened May 5, 2026 by
knewbury01
Contributor
Loading…
Previous Next
ProTip!
Updated in the last three days: updated:>2026-05-16.