CodeQL documentation

CodeQL 2.17.6 (2024-06-27)

This is an overview of changes in the CodeQL CLI and relevant CodeQL query and library packs. For additional updates on changes to the CodeQL code scanning experience, check out the code scanning section on the GitHub blog, relevant GitHub Changelog updates, changes in the CodeQL extension for Visual Studio Code, and the CodeQL Action changelog.

Security Coverage

CodeQL 2.17.6 runs a total of 414 security queries when configured with the Default suite (covering 161 CWE). The Extended suite enables an additional 131 queries (covering 35 more CWE).

CodeQL CLI

New Features

  • Beta support is now available for analyzing C# codebases without needing a working build. To use this, pass the --build-mode none option to codeql database create.

Improvements

  • The --model-packs option is now publicly available. This option allows commands like codeql database analyze to accept a list of model packs that are used to augment the analysis of all queries involved in the analysis.
  • © GitHub, Inc.
  • Terms
  • Privacy