3921 Commits

Author SHA1 Message Date
github-actions[bot]
a22f6348c1
Modify rule S117: Variable names should comply with a naming convention in Kubernetes (#3590) 2024-02-01 11:34:30 +01:00
github-actions[bot]
15ee5b3875
Create rule S6892: CPU requests should be enforced (#3580) 2024-02-01 11:15:39 +01:00
github-actions[bot]
e8879ca088
Create rule S6877: SequencedCollection reversed view should be used instead of Collections.reverse for read-only lists (#3562)
Co-authored-by: leonardo-pilastri-sonarsource <115481625+leonardo-pilastri-sonarsource@users.noreply.github.com>
2024-02-01 09:29:17 +01:00
SonarTech
b40a28cb46 update coverage information 2024-02-01 00:33:02 +00:00
Eric Morand
d2f786adb3
Modify rule S2871: Emphasize the necessity of using String.localeCompare to sort arrays of strings (#3576)
* Modify rule S2871: Add exception for arrays of strings

* S2871: Remove the exception mention and emphasize the usage of String.localeCompare
2024-01-31 17:27:47 +01:00
github-actions[bot]
d301b56761
Create rule S6876: SequencedCollection reversed view should be used for reverse iteration order (#3561)
Co-authored-by: leonardo-pilastri-sonarsource <115481625+leonardo-pilastri-sonarsource@users.noreply.github.com>
2024-01-31 14:04:46 +01:00
github-actions[bot]
e27296f3d1
Create rule S6874: Variable names should comply with a naming convention (#3557) 2024-01-31 12:48:22 +01:00
github-actions[bot]
92d1729857
Create rule S6873: Memory requests should be enforced (#3555) 2024-01-31 12:08:43 +01:00
github-actions[bot]
3612257f44
Create rule S6880, Use switch instead of if-else chain to compare a variable against multiple cases (#3565) 2024-01-31 11:50:54 +01:00
github-actions[bot]
e369ea0960
Create rule S6885 (#3571) 2024-01-31 11:22:19 +01:00
github-actions[bot]
529611e08b
CPP-4792 Create rule S6871: All the elements of an aggregate should be provided with an initial value 2024-01-31 11:18:24 +01:00
tomasz-kaminski-sonarsource
d8063fa808
Replace repox-npm-proxy with https://registry.npmjs.org 2024-01-31 09:56:30 +00:00
daniel-teuchert-sonarsource
b7c4d7a88c
Modify rule S6504: Clarify intention of rule (APPSEC-1350) (#3528)
* Adjust rule S6504

* Update rules/S6504/docker/rule.adoc

Co-authored-by: Egon Okerman <egon.okerman@sonarsource.com>

* Update rules/S6504/docker/rule.adoc

Co-authored-by: Egon Okerman <egon.okerman@sonarsource.com>

* Adjustments after review

* Added information to recommended secure coding practices

* Update rule.adoc

---------

Co-authored-by: Egon Okerman <egon.okerman@sonarsource.com>
2024-01-31 10:37:36 +01:00
github-actions[bot]
6168ed121e
Create rule S6879: Thread.ofVirtual().start(Runnable task) method chain should not be used (#3564) 2024-01-30 16:59:39 +01:00
Eric MORAND
8f17ae938a
Modify rule S4123: Add clarification about returning a promise and JSdoc (#3556)
Co-authored-by: Ilia Kebets <ilia.kebets@sonarsource.com>
2024-01-30 14:21:10 +01:00
leonardo-pilastri-sonarsource
fae9f98957
Modify rule S6741: Fix broken pandas docs link (#3568) 2024-01-30 11:53:35 +01:00
SonarTech
dafeb03dd7 update coverage information 2024-01-30 00:32:43 +00:00
github-actions[bot]
33a29b7555
Create rule S5332 (#3526) 2024-01-29 15:16:07 +01:00
kevin.hinz
e898599466
Docs review patch 3 (#3544) 2024-01-29 14:28:14 +01:00
Cristian Ambrosini
7477890d87
S120: Add code examples for PLSQL (#3558) 2024-01-29 14:08:34 +01:00
SonarTech
44af686c39 update coverage information 2024-01-27 00:33:02 +00:00
Philipp Dominik Schubert
5c058a0fad
Modify Rule S2699: Fix Typos (#3482) 2024-01-26 15:46:17 +01:00
Jonas Wielage
488de63ab1
Modify S6473: Fix indentation (#3553) 2024-01-26 13:18:34 +01:00
Navendu Barua
e0a174381a
Modify rule S6865: Updated example, message and removed configuration part for now (#3551) 2024-01-26 10:52:39 +01:00
SonarTech
82406849e5 update coverage information 2024-01-26 00:32:37 +00:00
Antonio Aversa
1078d5de96
Modify rule S1126: Fix code example (#3552) 2024-01-25 18:01:26 +00:00
Loris S
96811524d7
Modify JVM Crypto rules: Change framework name (#3550)
* Modify JVM Crypto rules: Change title

* changed names

* Apply suggestions from code review

* fixed includes
2024-01-25 15:18:07 +01:00
SonarTech
61dd4e56e2 update coverage information 2024-01-25 00:32:46 +00:00
Loïc Joly
59263f6cba
Add case for link in code font 2024-01-25 01:08:04 +01:00
Yassin Kammoun
bc7b04a2e1
Modify rule S1126: Use the terms 'truthy' and 'falsy' (#3548) 2024-01-24 16:40:36 +01:00
Navendu Barua
0ed2d95292
Modify rule S6864: Update examples and removal of LimitRange for now (#3547) 2024-01-24 12:26:23 +01:00
Scomocouk
df457e22f2
Modify rule S4035: Fix typo in 'Why is this an issue' section - "IEquitable<T>" -> "IEquatable<T>" (#3535)
Co-authored-by: Scott Moore <scott.moore@viavisolutions.com>
2024-01-24 12:00:02 +01:00
Loïc Joly
d1fe2c3ef5
CPP-4873 S1001: Literals namespaces should be allowlisted from the rule 2024-01-23 01:58:20 +01:00
SonarTech
b97c7b845e update coverage information 2024-01-23 00:33:13 +00:00
Fred Tingaud
ba118db149
Modify Rule S6620: Fix title 2024-01-22 12:21:23 +01:00
SonarTech
55210bdb9b update coverage information 2024-01-22 00:32:46 +00:00
Cristian Ambrosini
5a8cb4555a
Fix S4027 C#: BinaryFormatter. Serialization constructors are obsolete and should not be required (#3541) 2024-01-18 14:09:20 +01:00
Gregory Paidis
a69589504d
Modify rules S3260,S6610,S6612,S6613,S6617,S6618: Fix benchmark table (#3532)
* Fix benchmarks for S3260,S6610,S6612,S6613,S6617,S6618

* Review 1
2024-01-18 09:26:58 +01:00
Pierre-Loup
24a9c85e59
Fix broken links from blogs.bing.com and testng.org (#3540)
* Fix testng.org broken links

* Fix blogs.bing.com broken link
2024-01-18 09:20:33 +01:00
Pierre-Loup
770348d041
Avoid OWASP Top 10 security-standard mismatch between metadata and description links (RULEAPI-798) (#3537)
* Add check for security standard mismatch

* Fix security standard mismatches

* Fix Resources/Standards links for secrets rules

* Fix check

* Fix links and update security standard mapping

* Fix maintanability issue

* Apply review suggestions

* Apply suggestions from code review

Co-authored-by: Egon Okerman <egon.okerman@sonarsource.com>

* Fix typo

Co-authored-by: Egon Okerman <egon.okerman@sonarsource.com>

---------

Co-authored-by: Egon Okerman <egon.okerman@sonarsource.com>
2024-01-17 17:20:28 +01:00
Peter Trifanov
f6ac76fbb1
Fix links to Docker docs in S6437 and S6472 (#3536) 2024-01-17 14:41:59 +01:00
Egon Okerman
d1417e82f8
Modify CWE and OWASP Top 10 links to follow standard link format (APPSEC-1134) (#3529)
* Fix all CWE references

* Fix all OWASP references

* Fix missing CWE prefixes
2024-01-15 17:15:56 +01:00
Gregory Paidis
1aafc90f68
Fix benchmarks for S6602,S6603,S6605,S6607,S6608,S6609 (#3530) 2024-01-15 08:47:49 +01:00
Gregory Paidis
96fed93d7b
Benchmarks Guide: Update statistical term links (#3531) 2024-01-05 13:52:54 +01:00
Egon Okerman
6fe3e11073
Modify rule S5131: Add FastAPI (APPSEC-1250) (#3412) 2024-01-04 11:23:05 +01:00
Egon Okerman
6a8c878999
Fix Flask example (#3527) 2024-01-03 16:36:15 +01:00
SonarTech
5a6e7fd8cd update coverage information 2023-12-23 00:32:44 +00:00
github-actions[bot]
816372774e
Create rule S6870: Storage limits should be enforced (#3521) 2023-12-22 15:52:20 +01:00
github-actions[bot]
1f170595e5
Create rule S1444: Public "static" fields should be read-only (#3475) 2023-12-22 15:12:45 +01:00
Fred Tingaud
a1090dca6c
Clean warnings 2023-12-22 14:18:33 +01:00