From c82436b68c08fc188a9dc8e62d85792e55169e23 Mon Sep 17 00:00:00 2001 From: Jake Bailey <5341706+jakebailey@users.noreply.github.com> Date: Fri, 21 Oct 2022 18:59:12 -0700 Subject: [PATCH] Disable slow CodeQL queries See issue 10937 on github.com/github/codeql. --- .github/codeql/codeql-configuration.yml | 26 +++++++++++++++++++++++++ 1 file changed, 26 insertions(+) diff --git a/.github/codeql/codeql-configuration.yml b/.github/codeql/codeql-configuration.yml index a9e8b576b7c65..3470e9f25a6af 100644 --- a/.github/codeql/codeql-configuration.yml +++ b/.github/codeql/codeql-configuration.yml @@ -6,3 +6,29 @@ paths: - Gulpfile.mjs paths-ignore: - src/lib + +# These queries appear to time out after the module conversion. +# https://github.com/github/codeql/issues/10937 +query-filters: + - exclude: + id: js/path-injection # TaintedPath.ql + - exclude: + id: js/command-line-injection # CommandInjection.ql + - exclude: + id: js/code-injection # CodeInjection.ql + - exclude: + id: js/bad-code-sanitization # ImproperCodeSanitization.ql + - exclude: + id: js/unsafe-dynamic-method-access # UnsafeDynamicMethodAccess.ql + - exclude: + id: js/clear-text-logging # CleartextLogging.ql + - exclude: + id: js/regex-injection # RegExpInjection.ql + - exclude: + id: js/unvalidated-dynamic-method-call # UnvalidatedDynamicMethodCall.ql + - exclude: + id: js/insecure-download # InsecureDownload.ql + - exclude: + id: js/prototype-polluting-assignment # PrototypePollutingAssignment.ql + - exclude: + id: js/request-forgery # RequestForgery.ql