Skip to content

Pull requests: github/codeql

Author
Filter by author
Loading
Label
Filter by label
Loading
Use alt + click/return to exclude labels
or + click/return for logical OR
Projects
Filter by project
Loading
Milestones
Filter by milestone
Loading
Reviews
Assignee
Filter by who’s assigned
Assigned to nobody Loading
Sort

Pull requests list

Fix/path injection read subkind documentation Java
#21741 opened Apr 21, 2026 by MarkLee131 Contributor Loading… updated Apr 30, 2026
5 tasks done
Add MaDs for Jakarta REST library Java
#21776 opened Apr 29, 2026 by jacknojo Contributor Draft updated Apr 29, 2026
Just: introduce common "verbs" Actions Analysis of GitHub Actions C# C++ documentation Go Java JS Kotlin Python Ruby Rust Pull requests that update Rust code Swift
#19978 opened Jul 4, 2025 by redsun82 Contributor Loading… updated Apr 15, 2026
Add 'View DFG' queries C# DataFlow Library Java JS Ruby Rust Pull requests that update Rust code Swift
#21384 opened Feb 27, 2026 by asgerf Contributor Draft updated Mar 2, 2026
Crypto: Support additional JCA algorithms/modes, add PQC demo queries Java
#21354 opened Feb 22, 2026 by nicolaswill Contributor Loading… updated Feb 22, 2026
Shared (static): Always treat subtypes column as true C# C++ Go Java
#21085 opened Jan 2, 2026 by owen-mc Contributor Draft updated Jan 16, 2026
Shared: Improve range analysis for phis at loop exits C++ Java
#21135 opened Jan 9, 2026 by MathiasVP Contributor Draft updated Jan 9, 2026
Shared: Make UniversalFlow overlay-aware. C++ Java
#20884 opened Nov 21, 2025 by aschackmull Contributor Draft updated Jan 8, 2026
[Draft] Java: Add remote flow sources for jakarta.websocket Java
#21041 opened Dec 15, 2025 by joefarebrother Contributor Draft updated Dec 15, 2025
Java: Propagate taint through field reads Java
#20865 opened Nov 18, 2025 by owen-mc Contributor Draft updated Nov 28, 2025
Crypto: Add BouncyCastle signatures and block cipher modes documentation Java
#20575 opened Oct 2, 2025 by nicolaswill Contributor Loading… updated Oct 2, 2025
Crypto: Add some example Java cryptographic discovery queries Java
#20567 opened Oct 1, 2025 by unprovable Contributor Loading… updated Oct 2, 2025
Java: Add existing models of file reads to local threat model sources Java
#20533 opened Sep 26, 2025 by owen-mc Contributor Draft updated Sep 26, 2025
Java: Add test showing missing dispatch for incomplete parameterised type Java no-change-note-required This PR does not need a change note
#19543 opened May 20, 2025 by aschackmull Contributor Loading… updated May 21, 2025
Fix typo from occured to occurred Java JS
#19485 opened May 13, 2025 by BaseMax Loading… updated May 14, 2025
Java: Remove experimental queries. documentation Java
#18626 opened Jan 29, 2025 by michaelnebel Contributor Draft updated Jan 29, 2025
Data flow: Remove allowParameterReturnInSelf restriction C# C++ DataFlow Library Go Java Python Ruby Rust Pull requests that update Rust code Swift
#18217 opened Dec 5, 2024 by hvitved Contributor Draft updated Dec 5, 2024
C++/Java/C# Shared Range Analysis: BigInt rewrite experiment C# C++ Java
#16864 opened Jun 27, 2024 by d10c Contributor Draft updated Jul 19, 2024
java inline expectations proof-of-concept with tests Java WIP This is a work-in-progress, do not merge yet!
#16911 opened Jul 5, 2024 by ginsbach Contributor Draft updated Jul 16, 2024
Set java/string-concatenation-in-loop as having high precision Java
#16844 opened Jun 26, 2024 by sampart Contributor Draft updated Jun 27, 2024
Java: Improve concatenation in loops Java
#16859 opened Jun 27, 2024 by yoff Contributor Draft updated Jun 27, 2024
BigInt: Range Analysis experiment C# C++ Java
#16743 opened Jun 12, 2024 by d10c Contributor Draft updated Jun 27, 2024
ProTip! What’s not been updated in a month: updated:<2026-03-30.