rspec/rules/S2441/java/comments-and-links.adoc

9 lines
441 B
Plaintext

=== on 27 Feb 2015, 21:11:59 Freddy Mallet wrote:
@Ann, we can link this rule to http://cwe.mitre.org/data/definitions/579.html[CWE-579]: "J2EE Bad Practices: Non-serializable Object Stored in Session"
=== on 15 Feb 2016, 19:12:14 Ann Campbell wrote:
This maps to https://www.securecoding.cert.org/confluence/x/EYDeBw[CERT MSC08-J.] but I'm not adding a reference field value or a See entry because the CERT version is currently a stub.