
CodeQL in Github not showing found issues for custom queries
Jan 14, 2025 · I am running CodeQL inside a private organization with advanced security enabled. It is working good for default queries. The queries security-extended and security-and-quality are …
codeql - How does the autobuild step work in Github Advanced …
Jan 17, 2024 · Correct. CodeQL Autobuild is documented for each language on the GitHub docs "About autobuild for CodeQL". You need to specify.net build steps manually as you would in your normal CI. …
Errors with Setting Up custom CodeQL queries - Stack Overflow
Apr 27, 2025 · Do you have a codeql-pack.yml / qlpack.yml file with the codeql/cpp-all pack as dependency? See also the documentation about the codeql-pack.yml file. If not, it might be easiest to …
Enable/Disable CodeQL code scanning for a repo using Github Rest API ...
Nov 28, 2022 · However, if you have already set up CodeQL code scanning manually you could maybe use the REST API endpoints for disabling and enabling the already existing code scanning workflow. …
Why does codeql create database run into issue?
Apr 5, 2023 · It's my first time using codeql,the dir demo contains a simple cpp file,i tried to run a demo like this codeql database create ./demo-db -s . --language=cpp . However,it ran into issue,here are the
Is there a way to exclude files from CodeQL scanning on GitHub
Oct 11, 2022 · Is there a way to exclude files from CodeQL scanning on GitHub Asked 3 years, 2 months ago Modified 11 months ago Viewed 8k times
Validating file paths to satisfy GitHub CodeQL's "Uncontrolled data ...
Aug 16, 2024 · I'm writing functions for a Python package to register files from a file system to an SQL database, and GitHub's CodeQL has flagged that the file paths are a potential security risk. I have …
CodeQL analyzer not working - Stack Overflow
Oct 2, 2023 · Find an example repo here: ghas-demo designed for GitHub workflows. However, it also applies to Azure DevOps. Just import the repo to DevOps, then create a Yaml pipeline by following …
Configuring CodeQL with Github actions using well known weaknesses
May 25, 2022 · Default setup currently supports analysis of JavaScript (including TypeScript), Python, and Ruby code. More languages will be supported soon, and all other languages supported by …
Codeql failing to scan github repository storing only java code
Aug 23, 2023 · Now as I'm trying to scan this by codeql, it was trying to autobuild it without success. After investigating it online I understood that only specific type of projects can work with autobuild …