- Notifications
You must be signed in to change notification settings - Fork1.8k
Pull requests: github/codeql
Author
Uh oh!
There was an error while loading.Please reload this page.
Label
Uh oh!
There was an error while loading.Please reload this page.
Projects
Uh oh!
There was an error while loading.Please reload this page.
Milestones
Uh oh!
There was an error while loading.Please reload this page.
Reviews
Assignee
Assigned to nobodyLoading
Uh oh!
There was an error while loading.Please reload this page.
Sort
Pull requests list
Python: Model remote flow sources for the
websockets library documentation Python #20945 openedDec 1, 2025 byjoefarebrotherLoading…
Rust: Add barriers forPull requests that update Rust code
rust/access-invalid-pointer Rust #20941 openedDec 1, 2025 bypaldepindLoading…
Rust: Add heuristic sinks for passwords, initialization vectors etc documentation RustPull requests that update Rust code
#20939 openedDec 1, 2025 bygeoffw0Loading…
JS: Add use cache directives from Next.js 16 documentation JS
#20938 openedNov 29, 2025 bytesseractjhLoading…
Actions: fix filtering of code injection results between medium and critical version of query ActionsAnalysis of GitHub Actions documentation
#20937 openedNov 28, 2025 byowen-mcLoading…
C#: Gracefully handle
dotnet --info exit code 143. C# #20936 openedNov 28, 2025 bymichaelnebel • Draft
C#: Invoke the extractor after the compiler to ensure that source generators have been executed. C#
#20933 openedNov 28, 2025 bymichaelnebel • Draft
Java: add more Spring RestTemplate request forgery sinks documentation Java
#20930 openedNov 28, 2025 byowen-mcLoading…
C#: Replace initializer splitting with an ObjectInitMethod. C#
#20922 openedNov 26, 2025 byaschackmull • Draft
Python: detecting header splitting in synthetic app documentation Python
#20919 openedNov 26, 2025 byyoffLoading…
JS: Handle default 'content-type' header in Response() objects documentation JS
#20918 openedNov 26, 2025 byasgerfLoading…
Go: enable data flow consistency checks DataFlow Library documentation Go
#20917 openedNov 26, 2025 byowen-mcLoading…
JS: Handle Next.js files named 'page' or 'route' documentation JS
#20916 openedNov 26, 2025 byasgerfLoading…
Shared: Improvements to content-sensitive model generation DataFlow Library RustPull requests that update Rust code
Python: Add models for socketio documentation Python
#20914 openedNov 25, 2025 byjoefarebrotherLoading…
Treat zap custom encoders as sanitizers for log-injection checks Go
#20912 openedNov 25, 2025 bydanielriddell21 • Draft
Actions: improve improper access control query ActionsAnalysis of GitHub Actions documentation
#20904 openedNov 25, 2025 byredsun82Loading…
Rust: Jump-to-def for operations and indexing no-change-note-requiredThis PR does not need a change note RustPull requests that update Rust code
#20900 openedNov 24, 2025 byhvitvedLoading…
ProTip! Filter pull requests by the default branch withbase:main.