Download Latest Version Release v1.131.0 source code.tar.gz (10.3 MB)
Email in envelope

Get an email when there's a new version of Semgrep

Home / v1.131.0
Name Modified Size InfoDownloads / Week
Parent folder
README.md 2025-07-31 1.1 kB
Release v1.131.0 source code.tar.gz 2025-07-31 10.3 MB
Release v1.131.0 source code.zip 2025-07-31 14.0 MB
Totals: 3 Items   24.3 MB 11

1.131.0 - 2025-07-30

Fixed

  • Semgrep diff scans can now query the app for which merge base to use. This fixes the issue where some diff scans on shallow clones would use the wrong merge base, and do a diff scan on commits not in a PR. (better-merge-base)
  • Fix a possibility that an empty file be created in place of a missing input file. This bug had been introduced with Semgrep 1.115.0. (dont-create-missing-input-files)
  • When processing a target with debug logging enabled, we now only log the target path rather than the entire internal structure representation. This allows for more succinct log files and no longer introduces mid-entry newlines, which can break log-parsing tooling. (gh-4315)
  • Language server: Fixed a bug which broke the Sign in command (saf-2151)
  • CiScanComplete.dependencies is now populated with parsed dependencies (sc-2468)
  • Print error details when a SemgrepError exception is raised and causes semgrep to fail. (silent-semgrep-error)
Source: README.md, updated 2025-07-31