Issues: github/codeql
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
Autobuild C#: environment variables availability in dotnet / msbuild
question
Further information is requested
#11425
opened Nov 25, 2022 by
joshcampbell191
[False positive] GitHub staff acknowledges this issue
false-positive
not security
This issue does not relate to a security query
Python
py/call-to-non-callable on _decorated_ __call__ magic methods
acknowledged
#11408
opened Nov 24, 2022 by
amotl
[False positive] GitHub staff acknowledges this issue
false-positive
not security
This issue does not relate to a security query
Python
py/unused-local-variable on SQLAlchemy model definition classes
acknowledged
#11407
opened Nov 24, 2022 by
amotl
Recursive monotonic aggregates related: example provided by official docu is reported as an error "Non-monotonic recursion"
question
Further information is requested
#11361
opened Nov 22, 2022 by
iiins0mn1a
False positive – "Statement has no effect" for Python type hint ellipsis
false-positive
#11351
opened Nov 21, 2022 by
maxfischer2781
Example solution for "zip slip" contains a bug
question
Further information is requested
#11342
opened Nov 21, 2022 by
cezmunsta
go/ql/src/Security/CWE-020/ExternalAPIsUsedWithUntrustedData.ql kind error
question
Further information is requested
#11324
opened Nov 18, 2022 by
leila97
CodeQL: False positive for uninitialized variable (via import) in Python
acknowledged
GitHub staff acknowledges this issue
false-positive
Python
#11313
opened Nov 16, 2022 by
pyrito
Java: For some projects JDK classes have location under GitHub staff acknowledges this issue
Java
question
Further information is requested
sourceLocationPrefix
acknowledged
#11265
opened Nov 15, 2022 by
Marcono1234
Java: Further information is requested
Type.getErasure() erroneously has Object as result on some databases
question
#11264
opened Nov 15, 2022 by
Marcono1234
LGTM.com - false positive - contextlib.suppress not seen as thrown exception
acknowledged
GitHub staff acknowledges this issue
awaiting-response
The CodeQL team is awaiting further input or clarification from the original reporter of this issue.
false-positive
#11242
opened Nov 13, 2022 by
ikelos
cpp/uninitialized-local - false positive
acknowledged
GitHub staff acknowledges this issue
false-positive
#11240
opened Nov 12, 2022 by
ryao
LGTM.com - false positive "Statement has no effect" for Python await
false-positive
#11235
opened Nov 11, 2022 by
maxfischer2781
Indent about codeql vscode extension
question
Further information is requested
#11225
opened Nov 11, 2022 by
chennbnbnb
Issue templates should be made more relevant to people
question
Further information is requested
#11222
opened Nov 10, 2022 by
ryao
C++ view AST / printAST.ql performance analysis
question
Further information is requested
#11221
opened Nov 10, 2022 by
dwendt
false positive - cpp/unused-static-function
acknowledged
GitHub staff acknowledges this issue
false-positive
#11219
opened Nov 10, 2022 by
ryao
General issue - cpp/uninitialized-local should provide at least 1 path that leaves variable uninitialized (preferably all if possible)
question
Further information is requested
#11216
opened Nov 10, 2022 by
ryao
cpp/uncontrolled-allocation-size - false positive
acknowledged
GitHub staff acknowledges this issue
false-positive
#11215
opened Nov 10, 2022 by
ryao
Java: xml extractor ... does not provide file-indexing capabilities
question
Further information is requested
#11115
opened Nov 4, 2022 by
woadsl1234
Failed to create database from node module
question
Further information is requested
#11102
opened Nov 3, 2022 by
kal-purush
C/C++ question: taintTracking can not identify indirect use of Array pointer in a structure
question
Further information is requested
#11093
opened Nov 3, 2022 by
iiins0mn1a
Can't find dataflow for js in Vue module
question
Further information is requested
#11043
opened Oct 31, 2022 by
yd0ng
Code scanning results should be visible to everyone, not only those with write permission on the repository
question
Further information is requested
#11021
opened Oct 27, 2022 by
ryao
CodeQL ships vulnerable version of commons-text (1.6)
question
Further information is requested
#10990
opened Oct 26, 2022 by
FaiqueAli
Previous Next
ProTip!
no:milestone will show everything without a milestone.