-
Notifications
You must be signed in to change notification settings - Fork 2k
Pull requests: github/codeql
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
yeast: Extend
rule! macro with support for raw captures
documentation
#22070
opened Jun 26, 2026 by
tausbn
Contributor
Loading…
Replace
jcenter() and mavenCentral() with Maven Central mirror URL
Java
#22062
opened Jun 25, 2026 by
mario-campos
Contributor
Loading…
Shared: Support flow summaries from This PR does not need a change note
Python
Ruby
Rust
Pull requests that update Rust code
Swift
ReturnValues
C#
C++
DataFlow Library
Go
Java
JS
no-change-note-required
#22061
opened Jun 25, 2026 by
MathiasVP
Contributor
Loading…
Rust: Fix FPs in rust/hard-coded-cryptographic-value
documentation
Rust
Pull requests that update Rust code
#22053
opened Jun 25, 2026 by
geoffw0
Contributor
Loading…
Go: Update to 1.27
depends on internal PR
This PR should only be merged in sync with an internal Semmle PR
documentation
Go
C#: Improve package download logic.
C#
documentation
#22041
opened Jun 24, 2026 by
michaelnebel
Contributor
•
Draft
Add repr() and %r sanitizers to py/log-injection query to reduce false positives
Python
#22038
opened Jun 23, 2026 by
mrigankpawagi
Contributor
Loading…
Add java data extensions various
documentation
Java
#22034
opened Jun 22, 2026 by
knewbury01
Contributor
Loading…
C#: Use the feed manager in the NugetExeWrapper.
C#
documentation
#22033
opened Jun 22, 2026 by
michaelnebel
Contributor
Loading…
Python: fix py/insecure-protocol false positive on ssl.create_default_context()
documentation
Python
#22028
opened Jun 21, 2026 by
parkerbxyz
Member
•
Draft
Update Apache Avro MaDs - Now including summaries
Java
#22015
opened Jun 19, 2026 by
BazookaMusic
Contributor
•
Draft
[WIP] Prompt injection detection for python
documentation
Python
#22008
opened Jun 18, 2026 by
BazookaMusic
Contributor
•
Draft
Go: more models for
log.slog
documentation
Go
#22006
opened Jun 18, 2026 by
owen-mc
Contributor
Loading…
Bump the pip group across 2 directories with 2 updates
dependencies
Pull requests that update a dependency file
Python
#22005
opened Jun 18, 2026 by
dependabot
Bot
Loading…
Java: model LDAP bind-DN sinks for java/ldap-injection
documentation
Java
#22002
opened Jun 18, 2026 by
tonghuaroot
Contributor
Loading…
Add experimental C# query: SSRF host guard missing IPv6-transition unwrap (CWE-918/CWE-1389)
C#
documentation
#21964
opened Jun 10, 2026 by
tonghuaroot
Contributor
Loading…
Kotlin: Fix findTopLevelPropertyOrWarn for K2 compiler
documentation
Java
Kotlin
#21915
opened May 30, 2026 by
david-allison
Loading…
C++: Proper indirection in all QL models
C++
no-change-note-required
This PR does not need a change note
Previous Next
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.