The latest CodeQL release adds JavaScript, TypeScript, and Vue source modeling and improves the accuracy of several GitHub Actions queries.
CodeQL is the static analysis engine behind GitHub code scanning, which helps identify issues in codebases. The update was detailed in a GitHub Blog changelog post published on 2026-08-19.
WHAT CHANGED IN CODEQL 2.26.3
CodeQL 2.26.3 adds modeling for JavaScript, TypeScript, and Vue sources. TechStaged has also covered GitHub expands credential control with token-type deauthorization and revocation during security incidents.
It also improves the accuracy of several GitHub Actions queries.
- Adds JavaScript, TypeScript, and Vue source modeling
- Improves accuracy of multiple GitHub Actions queries
WHY THIS MATTERS FOR DEVELOPERS
Expanding source modeling to JavaScript, TypeScript, and Vue broadens CodeQL’s coverage for projects using these languages.
Improved GitHub Actions queries can lead to more accurate code scanning results for workflows and actions.
RELATED COVERAGE
- GitHub expands credential control with token-type deauthorization and revocation during security incidents
- GitHub adds Trends tab to organization Code Quality dashboard to track code health over time
- Replit launches Free Mode powered by GPT-5.6 Luna to broaden software creation access
- Three creatives build studio-quality campaigns with unlimited access to Google Flow in The Small Brief project
- Software articles
SOURCES
- Archive: 2026 - GitHub Changelog: CodeQL 2.26.3 improves GitHub Actions queries and JavaScript modeling Published · Primary source








