- GitHub Staff
- Denmark
- http://webbies.dk
Highlights
Block or Report
Block or report erik-krogh
Report abuse
Contact GitHub support about this user’s behavior. Learn more about reporting abuse.
Report abusePinned
-
github/codeql Public
CodeQL: the libraries and queries that power security researchers around the world, as well as code scanning in GitHub Advanced Security
-
The repository for high quality TypeScript type definitions.
-
3,755 contributions in the last year
Less
More
Contribution activity
October 2022
Created 32 commits in 1 repository
Created a pull request in github/codeql that received 7 comments
RB: add a query flagging uses of Kernel.open() that are not with a constant string
CVE-2019-10780: TP/TN CVE-2019-13574: TP/TN CVE-2019-5477: TP/TN CVE-2020-8130: TP/TN CVE-2021-21289: TP/TN CVE-2021-31799: TP/TN The alert-message…
+160
−83
•
7
comments
Opened 14 other pull requests in 1 repository
github/codeql
6
merged
7
open
1
closed
- Ruby: fix some more style-guide violations in the alert-messages
- QL: fix some more style-guide violations in the alert-messages
- Py: fix some more style-guide violations in the alert-messages
- JS: fix some more style-guide violations in the alert-messages
- Go: fix some more style-guide violations in the alert-messages
- C: fix some more style-guide violations in the alert-messages
- C#: fix some more style-guide violations in the alert-messages
- RB: add some more meta queries for Ruby evaluations
- RB: use xl runners for the ruby language tests
- RB: change the summary for reject() to always flow to the first block parameter
- RB: add an unsafe-shell-command-construction query
-
RB: add a link to the source in the alert-message for
rb/kernel-open - QL: recognize when this or result is only used in one side of a disjunct
- QL: More alert-message fixing
Reviewed 12 pull requests in 1 repository
github/codeql
12 pull requests
- Consider other XSS unsafe content-types when reasoning about XSS vulnerabilities
- Ruby: fix some more style-guide violations in the alert-messages
-
RB: add a query flagging uses of
Kernel.open()that are not with a constant string - JS: Improve detection of XSS when JSON.stringify()
-
Ruby: Cache use of
DataFlowImplFor(Pathname|HttpClientLibraries) - Py: fix some more style-guide violations in the alert-messages
- QL: fix some more style-guide violations in the alert-messages
- RB: add some more meta queries for Ruby evaluations
- Release preparation for version 2.11.1
- Tag successfully extracted files queries
- Javascript: Improve Restify support
- Ruby: Prevent reevaluation of expensive predicates
27
contributions
in private repositories
Oct 2 – Oct 11






