github / github/codeql

General issue - RandonUsedOnce.ql treated as a critical security issue

オープン
#7,601 コメント 2 件 リアクション 0 件 担当者 0 名 GitHub で見る
question
主要言語
CodeQL
スター
10.1k
フォーク
2.1k
平均マージ
2日 15時間
マージ済み PR(30日)
141

説明

**Description of the issue**
The following query is reported in Github alerts as a Critical severity security issue (with a severity of 9.8).
However there is no 'security' tag.

The impact is that other tools (e.g. LGTM) that parse the query differently do not treat this as a security issue. Can this be clarified?

https://github.com/github/codeql/blob/main/java/ql/src/Likely%20Bugs/Arithmetic/RandomUsedOnce.ql

コントリビューションガイド

コントリビューションガイドを開く

評価

この issue はまだ評価されていません。

新しい issue をメールで受け取る

初心者向けの GitHub issue を短くまとめたダイジェスト。