Sync upstream v2.23.8
#308
5 configurations not found
Warning: Code scanning may not have found all the alerts introduced by this pull request, because 5 configurations present on refs/heads/main were not found:
Actions workflow (rust-analysis.yml)
- ❓
.github/workflows/rust-analysis.yml:analyze/language:rust
Actions workflow (csv-coverage-metrics.yml)
- ❓
.github/workflows/csv-coverage-metrics.yml:publish-csharp - ❓
.github/workflows/csv-coverage-metrics.yml:publish-java
API upload
- ❓ <default>
Actions workflow (cpp-swift-analysis.yml)
- ❓
.github/workflows/cpp-swift-analysis.yml:CodeQL-Build
New alerts in code changed by this pull request
Security Alerts:
- 4 high
Other Alerts:
- 1 warning
- 55 notes
Alerts not introduced by this pull request might have been detected because the code changes were too large.
See annotations below for details.
Annotations
Code scanning / CodeQL
'requireSSL' attribute is not set to true High test
Code scanning / CodeQL
'requireSSL' attribute is not set to true High test
Code scanning / CodeQL
'requireSSL' attribute is not set to true High test
Check failure on line 4 in csharp/ql/src/Security Features/CWE-1004/Web.config
Code scanning / CodeQL
'requireSSL' attribute is not set to true High
Code scanning / CodeQL
Useless assignment to local variable Warning
Check notice on line 220 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Analyser.cs
Code scanning / CodeQL
Generic catch clause Note
Check notice on line 179 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Analyser.cs
Code scanning / CodeQL
Generic catch clause Note
Check notice on line 172 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Analyser.cs
Code scanning / CodeQL
Nested 'if' statements can be combined Note
Check notice on line 117 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Analyser.cs
Code scanning / CodeQL
Generic catch clause Note
Check notice on line 589 in csharp/extractor/Semmle.Extraction.CSharp/Entities/Types/Type.cs
Code scanning / CodeQL
Missed opportunity to use Where Note
Check notice on line 52 in csharp/extractor/Semmle.Extraction.CSharp/Entities/Types/TupleType.cs
Code scanning / CodeQL
Missed opportunity to use Where Note
Check notice on line 121 in csharp/extractor/Semmle.Extraction.CSharp/Entities/TypeMention.cs
Code scanning / CodeQL
Local scope variable shadows member Note
Check notice on line 121 in csharp/extractor/Semmle.Extraction.CSharp/Entities/TypeMention.cs
Code scanning / CodeQL
Local scope variable shadows member Note
Check notice on line 121 in csharp/extractor/Semmle.Extraction.CSharp/Entities/TypeMention.cs
Code scanning / CodeQL
Local scope variable shadows member Note
Check notice on line 25 in csharp/extractor/Semmle.Extraction.CSharp/Entities/TypeMention.cs
Code scanning / CodeQL
Local scope variable shadows member Note
Check notice on line 47 in csharp/extractor/Semmle.Extraction.CSharp/Entities/Property.cs
Code scanning / CodeQL
Local scope variable shadows member Note
Check notice on line 177 in csharp/extractor/Semmle.Extraction.CSharp/Entities/Parameter.cs
Code scanning / CodeQL
Nested 'if' statements can be combined Note
Code scanning / CodeQL
Generic catch clause Note
Check notice on line 251 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Analyser.cs
Code scanning / CodeQL
Generic catch clause Note
Check notice on line 189 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Context.cs
Code scanning / CodeQL
Generic catch clause Note
Check notice on line 459 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Context.cs
Code scanning / CodeQL
Generic catch clause Note
Check notice on line 507 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Context.cs
Code scanning / CodeQL
Missed opportunity to use Select Note
Check notice on line 669 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Context.cs
Code scanning / CodeQL
Call to System.IO.Path.Combine Note
Check notice on line 677 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Context.cs
Code scanning / CodeQL
Generic catch clause Note
Check notice on line 124 in csharp/extractor/Semmle.Extraction.CSharp/Extractor/Extractor.cs
Code scanning / CodeQL
Generic catch clause Note