werpu / jsfs_js_ts

Apache License 2.0
2 stars 1 forks source link

ci: add codeql #16

Closed henningn closed 2 years ago

henningn commented 2 years ago

There are some code alerts (Incomplete string escaping or encoding) in Tobago about jsf.js and jsf-development.js.

https://github.com/apache/myfaces-tobago/security/code-scanning/33?query=ref%3Arefs%2Fheads%2Fmaster https://github.com/apache/myfaces-tobago/security/code-scanning/32?query=ref%3Arefs%2Fheads%2Fmaster

I've added a yaml for CodeQL so this alerts should be visible in this pull request.

werpu commented 2 years ago

Hi I will take over this today or tomorrow in the evening, thanks for reporting

werpu commented 2 years ago

Hi sorry, it took that long. I will take over the issue today.