Skip to content

Conversation

@dilanbhalla
Copy link
Collaborator

This PR syncs the latest changes from codeql-cli/latest into main.

d10c and others added 30 commits July 17, 2025 14:44
d10c and others added 24 commits August 15, 2025 12:07
…csharp

C#: Diff-informed queries: phase 3 (non-trivial locations)
Go: Diff-informed queries: phase 3 (non-trivial locations)
We no longer alert on template instantiations, just the template.
…actions

Actions: Diff-informed queries: phase 3 (non-trivial locations)
…threat-model

JS: Exclude environment variables from `js/regex-injection` query by default
JS: Enhance command injection detection for CLI argument parsing libraries
…python

Python: Diff-informed queries: phase 3 (non-trivial locations)
C++: Diff-informed queries: phase 3 (non-trivial locations)
Add data extensions for remote tainted sources
Rust: Add a type inference test case resembling PathBuf.canonicalize.
…on-tree-children

Shared: Skip non-CFG children in `StandardTree`
C++: SloppyGlobal: Don't alert on template instantiations, only the template
Rust: Remove TC from `ImplTraitTypeRepr.isInReturnPos`
Release preparation for version 2.22.4
Compatible with the latest released version of the CodeQL CLI
@dilanbhalla dilanbhalla merged commit 218f79f into main Sep 2, 2025
17 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.