github / github/codeql

gradle: False positives from generated code from the version catalog feature

オープン
#14,530 コメント 3 件 リアクション 0 件 担当者 0 名 GitHub で見る
false-positive
主要言語
CodeQL
スター
10.1k
フォーク
2.1k
平均マージ
2日 15時間
マージ済み PR(30日)
141

説明

Using the version catalog feature of gradle () with the default `libs.versions.toml` file produces false positives such as:

> `.gradle/8.4/dependencies-accessors/1989acdfa2790571c9dc5975340ca543de5bf0a0/sources/org/gradle/accessors/dm/LibrariesForLibsInPluginsBlock.java:609`
> This method overrides `ProviderConvertible.asProvider;` it is advisable to add an Override annotation.

This is generated code and should not produce a warning (even if it's just at the *note* level)

Example source:
Corresponding alerts:

コントリビューションガイド

コントリビューションガイドを開く

評価

この issue はまだ評価されていません。

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。