CodeQL 2.26.0 adds Kotlin 2.4.0 support and AI prompt injection detection
CodeQL is the static analysis engine behind GitHub code scanning , which finds and remediates security issues in your code. We’ve recently released CodeQL 2.26.0 , which adds support for Kotlin 2.4.0, introduces a JavaScript and TypeScript query for system prompt injection, and improves analysis accuracy across multiple languages.
Read GitHub's release noteshttps://github.blog/changelog/2026-07-10-codeql-2-26-0-adds-kotlin-2-4-0-support-and-ai-prompt-injection-detection
Summaries of vendors' own notes. Product names and logos belong to their owners; logos via logo.dev.
More GitHub Advanced Security releases
Clearer names for secret scanning detector types
UpdateSecurityObservabilityDeveloper tools
Organization-level targeting for GitHub Code Quality
PreviewPricingObservability
Innersource security advisories are generally available
GASecurityObservabilityDeveloper tools
Manage secret scanning custom patterns via REST API
GASecurityObservabilityDeveloper tools
GitHub Code Quality license estimate in public preview
PreviewPricingDeveloper toolsCoding agents
Secret scanning extended metadata and multipart validation
GASecurityDeveloper toolsPerformance
Code scanning shows AI security detections on pull requests
UpdateGovernanceSecurity