-
Notifications
You must be signed in to change notification settings - Fork 2k
Pull requests: github/codeql
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
JS: Add prompt injection detection (CWE-1427) for OpenAI, Anthropic, …
documentation
JS
#21780
by BazookaMusic
was closed Apr 30, 2026
•
Draft
updated Apr 30, 2026
C#: Improve BMN feed checking & handling.
C#
documentation
#21684
by michaelnebel
Contributor
was merged Apr 30, 2026
Loading…
updated Apr 30, 2026
Java: treat hash/encrypt/digest methods as sensitive-log sanitizers
documentation
Java
#21654
by MarkLee131
Contributor
was merged Apr 30, 2026
Loading…
updated Apr 30, 2026
Narrow ZipSlip sinks to file write operations, excluding read-only paths
documentation
Java
#21609
by MarkLee131
Contributor
was closed Apr 30, 2026
Loading…
updated Apr 30, 2026
JS: Add support for @vercel/node serverless functions
documentation
JS
#21697
by murderteeth
Contributor
was merged Apr 29, 2026
Loading…
updated Apr 29, 2026
Java: add RegexpCheckBarrier to trust-boundary-violation sanitizers
documentation
Java
#21656
by MarkLee131
Contributor
was merged Apr 29, 2026
Loading…
updated Apr 29, 2026
C# 14: User defined compound assignment operators.
C#
documentation
#21372
by michaelnebel
Contributor
was merged Apr 29, 2026
Loading…
updated Apr 29, 2026
C++: Fix join-order problem in
getNextSwitchCase
C++
documentation
#21765
by jketema
Contributor
was merged Apr 28, 2026
Loading…
updated Apr 28, 2026
Add supply chain queries for npm publish token usage and missing provenance
Actions
Analysis of GitHub Actions
documentation
#21621
by david-wiggs
was closed Apr 28, 2026
Loading…
updated Apr 28, 2026
C++: Add
Strsafe.h models
C++
documentation
#21764
by MathiasVP
Contributor
was merged Apr 28, 2026
Loading…
updated Apr 28, 2026
Revert "Release preparation for version 2.25.3"
Actions
Analysis of GitHub Actions
C#
C++
DataFlow Library
documentation
Go
Java
JS
Python
Ruby
Rust
Pull requests that update Rust code
Swift
#21758
by mbg
Member
was merged Apr 27, 2026
Loading…
updated Apr 27, 2026
Java: recognize Path.toRealPath() as path normalization sanitizer
documentation
Java
#21652
by MarkLee131
Contributor
was merged Apr 23, 2026
Loading…
updated Apr 23, 2026
Add models of various
aligned_allocs
C++
documentation
#21725
by jeongsoolee09
Contributor
was merged Apr 17, 2026
Loading…
updated Apr 22, 2026
C#: Taint members of types in ASP.NET user context.
C#
documentation
#21612
by michaelnebel
Contributor
was merged Apr 22, 2026
Loading…
updated Apr 22, 2026
Docs: several minor fixes
documentation
#21742
by owen-mc
Contributor
was merged Apr 21, 2026
Loading…
updated Apr 21, 2026
C#: Replace CFG with the shared implementation
C#
documentation
Java
#21565
by aschackmull
Contributor
was merged Apr 21, 2026
Loading…
updated Apr 21, 2026
Document models-as-data barriers and barrier guards and add change notes
C#
C++
documentation
Go
Java
JS
Python
ready-for-doc-review
This PR requires and is ready for review from the GitHub docs team.
Ruby
Rust
Pull requests that update Rust code
#21523
by owen-mc
Contributor
was merged Apr 21, 2026
Loading…
updated Apr 21, 2026
Java: reduce false positives in sensitive-log
documentation
Java
#21650
by MarkLee131
Contributor
was merged Apr 21, 2026
Loading…
updated Apr 21, 2026
Fix GitHub History + Upgrade to 2.22.2
Actions
Analysis of GitHub Actions
C#
C++
documentation
Go
Java
JS
Kotlin
#20195
by dilanbhalla
Contributor
was closed Aug 8, 2025
Loading…
updated Apr 20, 2026
Swift: Update to Swift 6.3.1
documentation
Swift
#21728
by jketema
Contributor
was merged Apr 20, 2026
Loading…
updated Apr 20, 2026
Swift: Expose the generic arguments of
BuiltinFixedArrayTypes
documentation
Swift
#21723
by jketema
Contributor
was merged Apr 20, 2026
Loading…
updated Apr 20, 2026
Python: Add support for PEP-798
documentation
Python
#21695
by tausbn
Contributor
was merged Apr 20, 2026
Loading…
updated Apr 20, 2026
Java: fix bug in partial path traversal
documentation
Java
#21734
by owen-mc
Contributor
was merged Apr 20, 2026
Loading…
updated Apr 20, 2026
C++: Move change note to
lib
C++
documentation
#21731
by jketema
Contributor
was closed Apr 20, 2026
Loading…
updated Apr 20, 2026
Java: Add XXE sink model for Woodstox WstxInputFactory
documentation
Java
#21718
by chmodxxx
Contributor
was merged Apr 17, 2026
Loading…
updated Apr 17, 2026
Previous Next
ProTip!
Type g p on any issue or pull request to go back to the pull request listing page.